Description
The Under Construction / Maintenance Mode from Acurax plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.6 via the 'acx_csma_subscribe_ajax' function. This can allow authenticated attackers to extract sensitive data such as names and email addresses of subscribed visitors.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-59121 | The Under Construction / Maintenance Mode from Acurax plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.6 via the 'acx_csma_subscribe_ajax' function. This can allow authenticated attackers to extract sensitive data such as names and email addresses of subscribed visitors. |
References
History
Fri, 27 Feb 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 07 Feb 2025 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Acurax
Acurax under Construction \/ Maintenance Mode |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:acurax:under_construction_\/_maintenance_mode:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Acurax
Acurax under Construction \/ Maintenance Mode |
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2024-08-07T18:24:53.966Z
Reserved: 2023-12-18T15:08:35.575Z
Link: CVE-2023-6922
Updated: 2024-08-02T08:42:08.541Z
Status : Analyzed
Published: 2024-02-28T09:15:40.673
Modified: 2025-02-07T01:33:31.247
Link: CVE-2023-6922
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD