cleantalk
Vulnerabilities and Security Researches

Estatik Real Estate Plugin, CVE-2023-6048

CVE, Research URL

CVE-2023-6048

Published on
Jan 15, 2024
Research Description
The Estatik Real Estate Plugin WordPress plugin before 4.1.1 does not prevent user with low privileges on the site, like subscribers, from setting any of the site's options to 1, which could be used to break sites and lead to DoS when certain options are reset
Affected versions
max 4.1.1.
Status
vulnerable