CVE-2023-37885: WordPress RealHomes theme < 4.3.8 - Broken Access Control vulnerability
Published Mar 25, 2024
·Updated
Missing Authorization vulnerability in InspiryThemes RealHomes realhomes.This issue affects RealHomes: from n/a through < 4.3.8.
Affected Software
3 affected components
InspiryThemes RealHomes<=4.0.2
WordPress RealHomes<=4.0.2
InspiryThemes Realhomes Wordpress<4.3.8
Event History
Mar 25, 2024
CVE Published
via MITRE·04:32 AM
Data Sourced
via MITRE·04:32 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-37885?
CVE-2023-37885 is categorized as a Missing Authorization vulnerability, which can lead to unauthorized access to sensitive functionalities.
2
How do I fix CVE-2023-37885?
To fix CVE-2023-37885, update RealHomes to the latest version that addresses the missing authorization issues.
3
Which versions of InspiryThemes RealHomes are affected by CVE-2023-37885?
CVE-2023-37885 affects all versions of InspiryThemes RealHomes from release to version 4.0.2 inclusive.
4
What are the implications of CVE-2023-37885 for site security?
CVE-2023-37885 may allow attackers to bypass authentication and perform actions that should be restricted to authorized users.
5
Is CVE-2023-37885 specific to a certain platform?
CVE-2023-37885 is specific to the RealHomes theme for WordPress, particularly affecting its implementation in versions up to 4.0.2.