PT-2024-13929 · Niteothemes · Niteothemes Cmp

Yuchen Ji

·

Published

2024-03-27

·

Updated

2024-03-28

·

CVE-2023-50374

CVSS v3.1

5.5

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions NiteoThemes CMP – Coming Soon & Maintenance versions through 4.1.10
Description A Server-Side Request Forgery (SSRF) issue affects the software, allowing unauthorized access to internal resources. This can be exploited by manipulating requests to the server, potentially leading to sensitive data exposure or other malicious activities.
Recommendations For versions through 4.1.10, update to a version later than 4.1.10 to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-50374

Affected Products

Niteothemes Cmp