First published: Mon Dec 09 2024(Updated: )
Missing Authorization vulnerability in woobewoo Product Filter by WBW allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Product Filter by WBW: from n/a through 2.5.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WBW Product Filter | <=2.5.0 | |
WordPress Product Filter | <=2.5.0 |
Update the WordPress Product Filter by WBW plugin to the latest available version (at least 2.5.1).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-50877 is classified as a missing authorization vulnerability that can lead to unauthorized access due to incorrect access control configurations.
To fix CVE-2023-50877, ensure that you upgrade the Product Filter by WBW to a version above 2.5.0 to apply security enhancements.
CVE-2023-50877 affects Product Filter by WBW versions up to and including 2.5.0.
The main issue with CVE-2023-50877 is that the affected plugin lacks proper authorization checks, enabling potential unauthorized access to sensitive functionalities.
Any user or website utilizing Product Filter by WBW up to version 2.5.0 is potentially vulnerable to CVE-2023-50877.