First published: Fri Dec 13 2024(Updated: )
Missing Authorization vulnerability in Total-Soft Portfolio Gallery – Responsive Image Gallery allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Portfolio Gallery – Responsive Image Gallery: from n/a through 1.4.6.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Total-Soft Portfolio Gallery | <=1.4.6 | |
WordPress Portfolio Gallery | <=1.4.6 |
No patched version is available. No reply from the vendor.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-32585 has been categorized as a critical vulnerability due to the potential for unauthorized access resulting from missing authorization controls.
To fix CVE-2023-32585, update the Total-Soft Portfolio Gallery – Responsive Image Gallery to version 1.4.7 or later, ensuring the correct access controls are configured.
CVE-2023-32585 affects users of Total-Soft Portfolio Gallery – Responsive Image Gallery versions up to and including 1.4.6.
CVE-2023-32585 is identified as a Missing Authorization vulnerability, allowing exploitation due to incorrectly configured access control security levels.
Yes, CVE-2023-32585 could potentially lead to data breaches due to unauthorized access if not mitigated properly.