CVE-2023-48324: WordPress Awesome Support HelpDesk plugin <= 6.1.4 - Broken Access control vulnerability
Missing Authorization vulnerability in awesomesupport Awesome Support awesome-support allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Awesome Support: from n/a through <= 6.1.4.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-48324?
The severity of CVE-2023-48324 is classified as critical due to its potential for unauthorized access and data exposure.
How do I fix CVE-2023-48324?
To mitigate CVE-2023-48324, update Awesome Support to version 6.1.5 or later to ensure proper access control configurations.
Which versions of Awesome Support are affected by CVE-2023-48324?
CVE-2023-48324 affects Awesome Support versions up to and including 6.1.4.
What type of vulnerability is CVE-2023-48324?
CVE-2023-48324 is a Missing Authorization vulnerability that allows exploitation due to incorrectly configured access control.
Is there a risk of data exposure with CVE-2023-48324?
Yes, CVE-2023-48324 poses a significant risk of data exposure to unauthorized users if not addressed.