First published: Thu Jan 02 2025(Updated: )
Missing Authorization vulnerability in GiveWP GiveWP allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects GiveWP: from n/a through 2.33.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Givenu Givenu Give | <=2.33.1 | |
GiveWP | <=2.33.1 |
Update the WordPress GiveWP plugin to the latest available version (at least 2.33.2).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47183 is classified as a high severity vulnerability due to its potential to allow unauthorized access to sensitive functions in the GiveWP plugin.
To fix CVE-2023-47183, you should update the GiveWP plugin to version 2.33.2 or later where the issue has been addressed.
CVE-2023-47183 affects all versions of GiveWP up to and including version 2.33.1.
CVE-2023-47183 is a Missing Authorization vulnerability related to incorrectly configured access control.
If you cannot update GiveWP, it is important to review your access control settings and implement additional security measures to mitigate the risk associated with CVE-2023-47183.