CVE-2023-52233: WordPress POST SMTP Mailer plugin <= 2.8.6 - Broken Access Control on API vulnerability
Published Jun 11, 2024
·Updated
Missing Authorization vulnerability in Post SMTP Post SMTP Mailer/Email Log.This issue affects Post SMTP Mailer/Email Log: from n/a through 2.8.6.
Affected Software
1 affected component
Wpexperts Post Smtp Wordpress<2.8.7
Remediation
Information
Update to 2.8.7 or a higher version.
Event History
Jun 11, 2024
CVE Published
via MITRE·04:05 PM
Data Sourced
via MITRE·04:05 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-52233?
CVE-2023-52233 has been classified as a critical vulnerability due to missing authorization leading to potential unauthorized access.
2
How do I fix CVE-2023-52233?
To remediate CVE-2023-52233, update the Post SMTP Mailer/Email Log plugin to version 2.8.7 or later.
3
What versions of Post SMTP Mailer/Email Log are affected by CVE-2023-52233?
CVE-2023-52233 affects all versions of Post SMTP Mailer/Email Log up to and including version 2.8.6.
4
What type of vulnerability is CVE-2023-52233?
CVE-2023-52233 is categorized as a missing authorization vulnerability.
5
Can CVE-2023-52233 lead to data breaches?
Yes, due to its nature of missing authorization, CVE-2023-52233 could potentially allow unauthorized users to access sensitive data.