CVE-2023-41957

CVSS 3.1 Score 8.6 of 10 (high)

Details

Published May 17, 2024
CWE ID 269

Summary

CVE-2023-41957 is an Improper Privilege Management vulnerability affecting Simple Membership, specifically versions from n/a to 4.3.4 of the plugin. Hackers can exploit this issue in wp.Insider Simple Membership to gain privilege escalation, granting them unauthorized access to sensitive data or system functions. This vulnerability poses a serious risk to WordPress installations using the affected plugin version. It is crucial for users to update their plugin to the latest version as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share