First published: Mon Nov 06 2023(Updated: )
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Proper Fraction LLC. Admin Bar & Dashboard Access Control plugin <= 1.2.8 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
<=1.2.8 |
Update to 1.2.9 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47184 refers to a Cross-Site Scripting (XSS) vulnerability in the Proper Fraction LLC Admin Bar & Dashboard Access Control plugin version 1.2.8 and below.
The severity of CVE-2023-47184 is medium with a CVSS score of 4.8.
CVE-2023-47184 allows authenticated users with admin privileges to execute malicious scripts, potentially leading to unauthorized actions or data theft.
To fix CVE-2023-47184, update the Proper Fraction LLC Admin Bar & Dashboard Access Control plugin to version 1.2.9 or later.
More information about CVE-2023-47184 can be found at this [link](https://patchstack.com/database/vulnerability/admin-bar-dashboard-control/wordpress-admin-bar-dashboard-access-control-plugin-1-2-8-cross-site-scripting-xss-vulnerability?_s_id=cve).