cleantalk
Vulnerabilities and Security Researches

Passster – Password Protect Pages and Content, CVE-2024-0616

CVE, Research URL

CVE-2024-0616

Published on
Feb 29, 2024
Research Description
The Passster – Password Protect Pages and Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.2.6.2 via API. This makes it possible for unauthenticated attackers to obtain post titles, slugs, IDs, content and other metadata including passwords of password-protected posts and pages.
Affected versions
max 4.2.6.3.
Status
vulnerable