CVE-2023-48753: WordPress Restricted Site Access plugin <= 7.4.1 - IP Restriction Bypass vulnerability
Authentication Bypass by Spoofing vulnerability in 10up Restricted Site Access allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Restricted Site Access: from n/a through 7.4.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-48753?
CVE-2023-48753 is classified as a medium severity vulnerability due to its potential to allow unauthorized access.
How do I fix CVE-2023-48753?
To fix CVE-2023-48753, upgrade the 10up Restricted Site Access plugin to the latest version beyond 7.4.1.
What functionality is affected by CVE-2023-48753?
CVE-2023-48753 affects the access controls, allowing users to bypass restrictions and access unauthorized functionalities.
Who is affected by CVE-2023-48753?
Users of the 10up Restricted Site Access plugin versions from n/a up to 7.4.1 are affected by CVE-2023-48753.
Can CVE-2023-48753 be exploited by unauthenticated users?
Yes, CVE-2023-48753 can potentially be exploited by unauthenticated users to bypass authentication.