PT-2025-1491 · Wpdevart · Wpdevart Responsive Image Gallery

Thiennv

·

Published

2025-01-02

·

Updated

2025-01-02

·

CVE-2023-45631

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions wpdevart Responsive Image Gallery, Gallery Album versions n/a through 2.0.3
Description The issue is related to a missing authorization vulnerability in wpdevart Responsive Image Gallery, Gallery Album, which allows exploiting incorrectly configured access control security levels.
Recommendations For versions n/a through 2.0.3, update to a version later than 2.0.3 to resolve the issue. As a temporary workaround, consider restricting access to the gallery album to minimize the risk of exploitation.

Fix

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-45631

Affected Products

Wpdevart Responsive Image Gallery