Missing Authorization vulnerability in SolidWP iThemes Sync allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects iThemes Sync: from n/a through 2.1.13.
Metrics
Affected Vendors & Products
Fixes
Solution
Update the WordPress iThemes Sync plugin to the latest available version (at least 2.1.14).
Workaround
No workaround given by the vendor.
References
History
Fri, 13 Dec 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Missing Authorization vulnerability in SolidWP iThemes Sync allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects iThemes Sync: from n/a through 2.1.13. | |
Title | WordPress iThemes Sync plugin <= 2.1.13 - Broken Access Control vulnerability | |
Weaknesses | CWE-862 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2024-12-13T20:41:31.967Z
Reserved: 2023-08-08T11:43:05.860Z
Link: CVE-2023-40001

No data.

Status : Received
Published: 2024-12-13T15:15:20.870
Modified: 2024-12-13T15:15:20.870
Link: CVE-2023-40001

No data.

Updated: 2025-07-13T11:15:17Z