CVE-2023-50898: WordPress Image Optimizer, Resizer and CDN – Sirv plugin <= 7.1.2 - Broken Access Control vulnerability
Published Mar 15, 2024
·Updated
Missing Authorization vulnerability in sirv.Com Sirv.This issue affects Sirv: from n/a through 7.1.2.
Affected Software
3 affected components
Sirv Sirv Wordpress<=7.1.2
Sirv Sirv>n/a, <=7.1.2
Sirv WordPress Image Optimizer, Resizer and CDN – Sirv plugin<=7.1.2
Remediation
Information
Update to 7.1.3 or a higher version.
Event History
Mar 15, 2024
CVE Published
via MITRE·02:18 PM
Data Sourced
via MITRE·02:18 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-50898?
CVE-2023-50898 is classified as a missing authorization vulnerability affecting Sirv versions up to 7.1.2.
2
How do I fix CVE-2023-50898?
To fix CVE-2023-50898, update Sirv or the Sirv plugin to a version beyond 7.1.2.
3
What systems are affected by CVE-2023-50898?
CVE-2023-50898 affects Sirv CDN and the WordPress Image Optimizer, Resizer, and CDN – Sirv plugin versions up to 7.1.2.
4
What impact does CVE-2023-50898 have on my system?
CVE-2023-50898 can lead to unauthorized access, allowing attackers to manipulate or view content without proper permissions.
5
Is there a workaround for CVE-2023-50898 until I can update?
Currently, the best approach is to immediately update to the latest version as no specific workarounds are provided.