CVE-2023-6250: BestWebSoft's Like & Share < 2.74 - Unauthenticated Password Protected Post Read
Published Dec 26, 2023
·Updated
The BestWebSoft's Like & Share WordPress plugin before 2.74 discloses the content of password protected posts to unauthenticated users via a meta tag
Affected Software
1 affected component
Bestwebsoft Like \& Share Wordpress<2.74
Event History
Dec 26, 2023
CVE Published
06:33 PM
Data Sourced
06:33 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-6250?
CVE-2023-6250 has been classified as a vulnerability that allows unauthorized disclosure of information, which may pose moderate risk to affected systems.
2
How do I fix CVE-2023-6250?
To remediate CVE-2023-6250, update the BestWebSoft Like & Share plugin to version 2.74 or later.
3
Who is affected by CVE-2023-6250?
CVE-2023-6250 affects installations of the BestWebSoft Like & Share WordPress plugin prior to version 2.74.
4
What types of data are exposed in CVE-2023-6250?
CVE-2023-6250 allows the disclosure of the content of password protected posts to unauthenticated users.
5
Is there a workaround for CVE-2023-6250?
There is no official workaround for CVE-2023-6250; the only solution is to update the plugin.