CVE-2023-51375: WordPress EmbedPress plugin <= 3.8.3 - Broken Access Control vulnerability
Published Jun 21, 2024
·Updated
Missing Authorization vulnerability in WPDeveloper EmbedPress.This issue affects EmbedPress: from n/a through 3.8.3.
Affected Software
1 affected component
WPDeveloper Embedpress Wordpress<3.8.4
Remediation
Information
Update to 3.8.4 or a higher version.
Event History
Jun 21, 2024
CVE Published
via MITRE·01:37 PM
Data Sourced
via MITRE·01:37 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-51375?
CVE-2023-51375 is classified as a missing authorization vulnerability that can lead to broken access control.
2
How do I fix CVE-2023-51375?
To fix CVE-2023-51375, update the EmbedPress plugin to version 3.8.4 or later.
3
What versions of EmbedPress are affected by CVE-2023-51375?
CVE-2023-51375 affects EmbedPress versions up to and including 3.8.3.
4
What are the potential impacts of CVE-2023-51375?
CVE-2023-51375 can allow unauthorized users to access restricted functionalities within the EmbedPress plugin.
5
Is CVE-2023-51375 specific to a particular platform?
Yes, CVE-2023-51375 specifically affects the WordPress version of the WPDeveloper EmbedPress plugin.