First published: Mon Dec 09 2024(Updated: )
Missing Authorization vulnerability in Pagelayer Team PageLayer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PageLayer: from n/a through 1.7.7.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Pagelayer Plugin | <=1.7.7 | |
Pagelayer | <=1.7.7 |
Update the WordPress PageLayer plugin to the latest available version (at least 1.7.8).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-49196 is considered high due to the potential for unauthorized access resulting from incorrect access control configurations.
To fix CVE-2023-49196, update your PageLayer or Pagelayer plugin to version 1.7.8 or later, which addresses the missing authorization vulnerability.
CVE-2023-49196 affects PageLayer versions up to and including 1.7.7 as well as the Pagelayer plugin for WordPress.
CVE-2023-49196 is a Missing Authorization vulnerability that allows exploitation due to incorrectly configured access control security levels.
Users of PageLayer and the Pagelayer plugin in WordPress who have not updated beyond version 1.7.7 are impacted by CVE-2023-49196.