CVE-2023-37886: WordPress RealHomes theme < 4.3.8 - Broken Access Control vulnerability
Published Mar 25, 2024
·Updated
Missing Authorization vulnerability in InspiryThemes RealHomes realhomes.This issue affects RealHomes: from n/a through < 4.3.8.
Affected Software
3 affected components
InspiryThemes RealHomes<=4.0.2
WordPress RealHomes theme<=4.0.2
InspiryThemes Realhomes Wordpress<4.3.8
Event History
Mar 25, 2024
CVE Published
via MITRE·04:29 AM
Data Sourced
via MITRE·04:29 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-37886?
CVE-2023-37886 has been classified as a missing authorization vulnerability affecting versions of RealHomes up to 4.0.2.
2
How do I fix CVE-2023-37886?
To fix CVE-2023-37886, update the RealHomes theme to a version beyond 4.0.2 that addresses the missing authorization issue.
3
What versions of RealHomes are affected by CVE-2023-37886?
CVE-2023-37886 affects all versions of RealHomes from an undisclosed release up to and including 4.0.2.
4
What type of vulnerability is CVE-2023-37886?
CVE-2023-37886 is classified as a missing authorization vulnerability, which means unauthorized users may gain access to restricted areas.
5
Who is impacted by CVE-2023-37886?
Users of the RealHomes theme for WordPress, especially those using versions up to 4.0.2, are impacted by CVE-2023-37886.