CVE-2023-49741: WordPress Coming soon and Maintenance mode plugin <= 3.7.3 - IP Filtering Bypass vulnerability
Authentication Bypass by Spoofing vulnerability in wpdevart Coming soon and Maintenance mode allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Coming soon and Maintenance mode: from n/a through 3.7.3.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-49741?
CVE-2023-49741 is classified as a high-severity vulnerability due to its potential for authentication bypass.
How do I fix CVE-2023-49741?
To fix CVE-2023-49741, update the wpdevart Coming soon and Maintenance mode plugin to version 3.7.4 or later.
What are the effects of CVE-2023-49741?
CVE-2023-49741 allows unauthorized access to functionalities that are not properly constrained by access control lists (ACLs).
Which versions are affected by CVE-2023-49741?
CVE-2023-49741 affects all versions of the wpdevart Coming soon and Maintenance mode plugin up to and including version 3.7.3.
Is CVE-2023-49741 specific to certain WordPress configurations?
CVE-2023-49741 affects the wpdevart Coming soon and Maintenance mode plugin regardless of specific WordPress configurations, as long as the affected versions are used.