The Estatik Real Estate Plugin WordPress plugin before 4.1.1 does not prevent user with low privileges on the site, like subscribers, from setting any of the site's options to 1, which could be used to break sites and lead to DoS when certain options are reset
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/74cb07fe-fc82-472f-8c52-859c176d9e51 | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: WPScan
Published: 2024-01-15T15:10:40.683Z
Updated: 2024-01-15T15:10:40.683Z
Reserved: 2023-11-09T10:03:23.827Z
Link: CVE-2023-6048
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-01-15T16:15:12.280
Modified: 2024-01-19T18:09:11.130
Link: CVE-2023-6048
JSON object: View
Redhat Information
No data.
CWE