The Site Offline Or Coming Soon Or Maintenance Mode WordPress plugin before 1.5.3 prevents users from accessing a website but does not do so if the URL contained certain keywords. Adding those keywords to the URL's query string would bypass the plugin's main feature.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/7b6f91cd-5a00-49ca-93ff-db7220d2630a | Exploit Third Party Advisory |
Configurations
Information
Published : 2022-09-19 07:15
Updated : 2022-09-21 07:23
NVD link : CVE-2022-1580
Mitre link : CVE-2022-1580
JSON object : View
CWE
CWE-639
Authorization Bypass Through User-Controlled Key
Products Affected
freehtmldesigns
- site_offline