CVE-2023-46145: WordPress Themify Ultra theme <= 7.3.5 - Authenticated Privilege Escalation vulnerability
Published May 17, 2024
·Updated
Improper Privilege Management vulnerability in Themify Themify Ultra allows Privilege Escalation.This issue affects Themify Ultra: from n/a through 7.3.5.
Affected Software
3 affected components
Themify Ultra Wordpress<7.3.6
Themify Ultra<=7.3.5
WordPress Themify Ultra<=7.3.5
Remediation
Information
Update to 7.3.6 or a higher version.
Event History
May 17, 2024
CVE Published
via MITRE·08:32 AM
Data Sourced
via MITRE·08:32 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-46145?
CVE-2023-46145 has been classified as a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2023-46145?
To fix CVE-2023-46145, update Themify Ultra to version 7.3.6 or later.
3
Which versions of Themify Ultra are affected by CVE-2023-46145?
CVE-2023-46145 affects Themify Ultra versions up to and including 7.3.5.
4
What type of vulnerability is CVE-2023-46145?
CVE-2023-46145 is an improper privilege management vulnerability.
5
Can CVE-2023-46145 be exploited remotely?
CVE-2023-46145 requires authenticated access, making it potentially exploitable by users with lower privileges.