CVE-2023-45636

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Jan 2, 2025
CWE ID 862

Summary

CVE-2023-45636 is aMissing Authorization vulnerability that affects the WebToffee WordPress Backup & Migration plugin. This issue arises due to the lack of proper access control security checks, allowing unauthorized access. attackers can exploit this vulnerability to gain unauthorized access to the plugin's functionality, including backup and migration features. This vulnerability affects versions of the plugin from n/a through 1.4.1, and WordPress site administrators are urged to update their installations to the latest version to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share