CVE-2023-45105
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Dec 19, 2023
Updated: Feb 3, 2024
CWE ID 601
Summary
CVE-2023-45105 is a newly discovered URL Redirection vulnerability affecting the affiliate-toolkit – WordPress Affiliate Plugin by SERVIT Software Solutions. versions 3.3.9 and older are vulnerable to this Open Redirect issue. Hackers can exploit this flaw to redirect unsuspecting users to malicious websites, potentially leading to identity theft,data breaches, or other cyberattacks. Users are strongly advised to update the plugin to the latest version and enable input validation to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share