2024-06-04 14:03:33 +00:00
{
"id" : "CVE-2023-51667" ,
"sourceIdentifier" : "audit@patchstack.com" ,
"published" : "2024-06-04T13:15:50.500" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-21T08:38:34.013" ,
2024-06-04 18:03:31 +00:00
"vulnStatus" : "Awaiting Analysis" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2024-06-04 14:03:33 +00:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Authentication Bypass by Spoofing vulnerability in FeedbackWP Rate my Post \u2013 WP Rating System allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Rate my Post \u2013 WP Rating System: from n/a through 3.4.2."
2024-06-09 02:03:11 +00:00
} ,
{
"lang" : "es" ,
"value" : "Vulnerabilidad de omisi\u00f3n de autenticaci\u00f3n mediante falsificaci\u00f3n en FeedbackWP Rate my Post \u2013 WP Rating System permite acceder a la funcionalidad no restringida adecuadamente por las ACL. Este problema afecta a Rate my Post \u2013 WP Rating System: desde n/a hasta 3.4.2."
2024-06-04 14:03:33 +00:00
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
"source" : "audit@patchstack.com" ,
"type" : "Secondary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 5.3 ,
"baseSeverity" : "MEDIUM" ,
2024-06-04 14:03:33 +00:00
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "LOW" ,
"integrityImpact" : "NONE" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "NONE"
2024-06-04 14:03:33 +00:00
} ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 1.4
}
]
} ,
"weaknesses" : [
{
"source" : "audit@patchstack.com" ,
2024-12-08 03:06:42 +00:00
"type" : "Secondary" ,
2024-06-04 14:03:33 +00:00
"description" : [
{
"lang" : "en" ,
"value" : "CWE-290"
}
]
}
] ,
"references" : [
{
"url" : "https://patchstack.com/database/vulnerability/rate-my-post/wordpress-rate-my-post-wp-rating-system-plugin-3-4-2-broken-access-control-vulnerability?_s_id=cve" ,
"source" : "audit@patchstack.com"
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://patchstack.com/database/vulnerability/rate-my-post/wordpress-rate-my-post-wp-rating-system-plugin-3-4-2-broken-access-control-vulnerability?_s_id=cve" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2024-06-04 14:03:33 +00:00
}
]
}