CVE-2023-49741
Last modified
CVE-2023-49741 is a low-severity vulnerability rated 3.7/10 on the CVSS scale. Authentication Bypass by Spoofing vulnerability in wpdevart Coming soon and Maintenance mode allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Coming soon and Maintenance mode: from n/a through 3.7.3.. EPSS estimates a 0.34% chance of exploitation in the next 30 days.
Description
Authentication Bypass by Spoofing vulnerability in wpdevart Coming soon and Maintenance mode allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Coming soon and Maintenance mode: from n/a through 3.7.3.
Metrics
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2023-49741?
How severe is CVE-2023-49741?
How do I fix CVE-2023-49741?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-49735** UNSUPPORTED WHEN ASSIGNED ** The value set as the Defaul…7.5
- CVE-2023-49736A where_in JINJA macro allows users to specify a quote, whic…8.8
- CVE-2023-49738An information disclosure vulnerability exists in the image4…7.5
- CVE-2023-49739Vulnerability in IdeaBox Creations PowerPack Pro for Element…6.1
- CVE-2023-4974A vulnerability was found in Academy LMS 6.2. It has been ra…9.8
- CVE-2023-49740Improper Neutralization of Input During Web Page Generation …6.1
- CVE-2023-49742Missing Authorization vulnerability in Support Genix.This is…9.9
- CVE-2023-49743Improper Neutralization of Input During Web Page Generation …4.8
- CVE-2023-49744Cross-Site Request Forgery (CSRF) vulnerability in Gift Up G…8.8
- CVE-2023-49745Improper Neutralization of Input During Web Page Generation …5.4
- CVE-2023-49746Server-Side Request Forgery (SSRF) vulnerability in Softacul…4.3
- CVE-2023-49747Improper Neutralization of Input During Web Page Generation …5.4
Are you affected by CVE-2023-49741?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
