The Site Offline Or Coming Soon Or Maintenance Mode WordPress plugin before 1.5.3 prevents users from accessing a website but does not do so if the URL contained certain keywords. Adding those keywords to the URL's query string would bypass the plugin's main feature.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/7b6f91cd-5a00-49ca-93ff-db7220d2630a | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2022-09-19 14:15
Updated : 2024-02-28 19:29
NVD link : CVE-2022-1580
Mitre link : CVE-2022-1580
CVE.ORG link : CVE-2022-1580
JSON object : View
Products Affected
freehtmldesigns
- site_offline
CWE
CWE-639
Authorization Bypass Through User-Controlled Key