First published: Tue Jun 04 2024(Updated: )
Improper Restriction of Excessive Authentication Attempts vulnerability in CodePeople Contact Form Email allows Functionality Bypass.This issue affects Contact Form Email: from n/a through 1.3.41.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
CodePeople Contact Form Email | <1.3.42 | |
CodePeople Contact Form Email | <=1.3.41 | |
WordPress Contact Form Email | <=1.3.41 |
Update to 1.3.42 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-48318 is classified as a medium severity vulnerability due to its improper restriction of excessive authentication attempts.
To fix CVE-2023-48318, update the CodePeople Contact Form Email plugin to version 1.3.42 or later.
CVE-2023-48318 affects CodePeople Contact Form Email versions up to and including 1.3.41.
CVE-2023-48318 allows attackers to bypass authentication restrictions, which could lead to unauthorized access.
Yes, CVE-2023-48318 specifically affects the CodePeople Contact Form Email plugin on WordPress.