← volver
CVE-2023-33923

Broken Access Control leading to Arbitrary Plugin Activation in multiple HashThemes themes

CVSS 4.3 MEDIUMEPSS 0.5%CWE-862
Missing Authorization vulnerability in HashThemes Viral News, HashThemes Viral, HashThemes HashOne.This issue affects Viral News: from n/a through 1.4.5; Viral: from n/a through 1.8.0; HashOne: from n/a through 1.3.0.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →