Missing authorization vulnerability in Advanced Custom Fields versions prior to 5.12.1 and Advanced Custom Fields Pro versions prior to 5.12.1 allows a remote authenticated attacker to view the information on the database without the access permission.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-28273 Missing authorization vulnerability in Advanced Custom Fields versions prior to 5.12.1 and Advanced Custom Fields Pro versions prior to 5.12.1 allows a remote authenticated attacker to view the information on the database without the access permission.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-08-03T03:36:20.034Z

Reserved: 2022-02-18T00:00:00

Link: CVE-2022-23183

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-03-31T08:15:08.257

Modified: 2024-11-21T06:48:08.977

Link: CVE-2022-23183

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.