First published: Fri May 17 2024(Updated: )
Improper Privilege Management vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) allows Privilege Escalation.This issue affects WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn): from n/a through 7.6.6.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
miniOrange Social Login for WordPress | <=7.6.6 | |
miniOrange Social Login and Register Pro Addon | <=7.6.6 |
Update to 7.6.7 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47683 is classified as a high severity vulnerability due to its potential for privilege escalation.
To remediate CVE-2023-47683, update the miniOrange WordPress Social Login and Register plugin to a version higher than 7.6.6.
CVE-2023-47683 affects users of the miniOrange WordPress Social Login and Register plugin versions up to 7.6.6.
CVE-2023-47683 is an improper privilege management vulnerability that allows for privilege escalation.
Yes, CVE-2023-47683 can potentially be exploited remotely by an authenticated user to escalate privileges.