First published: Fri Dec 13 2024(Updated: )
Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Photo Gallery by 10Web: from n/a through 1.8.15.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
10quality Post Gallery | <=1.8.15 | |
10Web Photo Gallery | <=1.8.15 | |
10quality Post Gallery | <1.8.16 |
Update the WordPress Photo Gallery by 10Web plugin to the latest available version (at least 1.8.16).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-33995 is classified as a medium severity vulnerability.
To fix CVE-2023-33995, update Photo Gallery by 10Web to version 1.8.16 or later.
CVE-2023-33995 is a Missing Authorization vulnerability resulting from incorrectly configured access control settings.
CVE-2023-33995 affects all versions of Photo Gallery by 10Web up to and including 1.8.15.
Exploitation of CVE-2023-33995 could allow unauthorized access to sensitive data or features within the Photo Gallery plugin.