logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-2159

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-2159

Description:
The CMP – Coming Soon & Maintenance plugin for WordPress is vulnerable to Maintenance Mode Bypass in versions up to, and including, 4.1.7. A correct cmp_bypass GET parameter in the URL (equal to the md5-hashed home_url in the default setting) allows users to visit a site placed in maintenance mode thus bypassing the plugin's provided feature.
Last updated date:
06/15/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
06/15/2023
Reference url to background

https://plugins.trac.wordpress.org/browser/cmp-coming-soon-maintenance/tags/4.1.6/niteo-cmp.php#L808

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy