Vulnerability Description
Improper Authentication vulnerability in Easy Digital Downloads plugin allows unauth. Privilege Escalation. This issue affects Easy Digital Downloads: from 3.1 through 3.1.1.4.1.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Awesomemotive | Easy Digital Downloads | >= 3.1, < 3.1.1.4.2 |
Related Weaknesses (CWE)
References
- https://patchstack.com/articles/critical-easy-digital-downloads-vulnerability?_sPatchThird Party Advisory
- https://patchstack.com/database/vulnerability/easy-digital-downloads/wordpress-eThird Party Advisory
- https://patchstack.com/articles/critical-easy-digital-downloads-vulnerability?_sPatchThird Party Advisory
- https://patchstack.com/database/vulnerability/easy-digital-downloads/wordpress-eThird Party Advisory
FAQ
What is CVE-2023-30869?
CVE-2023-30869 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Improper Authentication vulnerability in Easy Digital Downloads plugin allows unauth. Privilege Escalation. This issue affects Easy Digital Downloads: from 3.1 through 3.1.1.4.1.
How severe is CVE-2023-30869?
CVE-2023-30869 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-30869?
Check the references section above for vendor advisories and patch information. Affected products include: Awesomemotive Easy Digital Downloads.