First published: Thu Jan 02 2025(Updated: )
Missing Authorization vulnerability in Farhan Noor ApplyOnline – Application Form Builder and Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ApplyOnline – Application Form Builder and Manager: from n/a through 2.5.3.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Farhan Noor ApplyOnline | >n/a<=2.5.3 | |
WordPress ApplyOnline – Application Form Builder and Manager plugin | <=2.5.3 |
No patched version is available.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-46080 is classified as a missing authorization vulnerability that may allow unauthorized access to sensitive information.
To fix CVE-2023-46080, upgrade Farhan Noor ApplyOnline or the WordPress plugin to version 2.5.4 or later where the vulnerability is addressed.
CVE-2023-46080 affects all versions of Farhan Noor ApplyOnline and the WordPress plugin from n/a up to and including 2.5.3.
CVE-2023-46080 is identified as a missing authorization vulnerability related to incorrectly configured access control.
The vendor of the affected products related to CVE-2023-46080 is Farhan Noor for the ApplyOnline application and WordPress for the corresponding plugin.