CVE-2023-36679: WordPress Spectra plugin <= 2.6.6 - Server Side Request Forgery (SSRF) vulnerability
Published Mar 28, 2024
·Updated
Server-Side Request Forgery (SSRF) vulnerability in Brainstorm Force Spectra.This issue affects Spectra: from n/a through 2.6.6.
Affected Software
3 affected components
Brainstorm Force Spectra<=2.6.6
WordPress Spectra plugin<=2.6.6
Brainstormforce Spectra Wordpress<2.6.7
Remediation
Information
Update to 2.6.7 or a higher version.
Event History
Mar 28, 2024
CVE Published
via MITRE·05:58 AM
Data Sourced
via MITRE·05:58 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·06:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-36679?
CVE-2023-36679 is considered a high severity Server-Side Request Forgery (SSRF) vulnerability.
2
How do I fix CVE-2023-36679?
To fix CVE-2023-36679, update the Brainstorm Force Spectra plugin to version 2.6.7 or later.
3
Who is affected by CVE-2023-36679?
CVE-2023-36679 affects all versions of the Brainstorm Force Spectra plugin from n/a up to 2.6.6.
4
What kind of vulnerability is CVE-2023-36679?
CVE-2023-36679 is identified as a Server-Side Request Forgery (SSRF) vulnerability.
5
Are there any known exploitations for CVE-2023-36679?
As of now, there are no publicly reported exploitations of CVE-2023-36679.