First published: Fri Dec 13 2024(Updated: )
Missing Authorization vulnerability in Cimatti Consulting Contact Forms by Cimatti allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Contact Forms by Cimatti: from n/a through 1.5.7.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Contact Forms by Cimatti | <=1.5.7 | |
Cimatti Contact Forms | <=1.5.7 |
Update the WordPress Contact Forms by Cimatti plugin to the latest available version (at least 1.5.8).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-35051 is classified as a missing authorization vulnerability, which can potentially allow unauthorized access to sensitive functionalities.
To fix CVE-2023-35051, update the Cimatti Contact Forms plugin to the latest version beyond 1.5.7, which addresses the access control issues.
CVE-2023-35051 affects users of the Cimatti Contact Forms plugin for WordPress versions up to and including 1.5.7.
The risks of CVE-2023-35051 include potential unauthorized access and exploitation of sensitive data through improperly configured access controls.
Yes, CVE-2023-35051 specifically affects the Cimatti Contact Forms plugin for WordPress.