CVE-2023-5949: SmartCrawl WordPress SEO checker < 3.8.3 - Unauthenticated Password Protected Post Disclosure
Published Dec 18, 2023
·Updated
The SmartCrawl WordPress plugin before 3.8.3 does not prevent unauthorised users from accessing password-protected posts' content.
Affected Software
1 affected component
wpmudev Smartcrawl Wordpress<3.8.3
Event History
Dec 18, 2023
CVE Published
08:08 PM
Data Sourced
08:08 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-5949?
CVE-2023-5949 is classified as a security vulnerability that allows unauthorized access to password-protected content.
2
How do I fix CVE-2023-5949?
To fix CVE-2023-5949, update the SmartCrawl WordPress plugin to version 3.8.3 or later.
3
What versions of the SmartCrawl plugin are affected by CVE-2023-5949?
CVE-2023-5949 affects SmartCrawl WordPress plugin versions prior to 3.8.3.
4
What type of vulnerability is CVE-2023-5949?
CVE-2023-5949 is a vulnerability related to unauthorized access to restricted content in the SmartCrawl WordPress plugin.
5
Is user authentication bypass possible due to CVE-2023-5949?
Yes, CVE-2023-5949 could allow unauthorized users to bypass authentication and access protected content.