CVE Database /
CVE-2023-23990
CVE · High
CVE-2023-23990 — Redirection for Contact Form 7 [wpcf7-redirect] < 2.8.0
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2023-23990
|
Redirection for Contact Form 7 [wpcf7-redirect] < 2.8.0 |
Improper Privilege Management |
High
7.6
|
< 2.8.0
|
2.8.0 |
2023-02-06 |
—
|
CVE-2023-23990
The Redirection for Contact Form 7 plugin before version 2.8.0 contains a privilege escalation vulnerability that was discovered by Rafie Muhammad. An attacker with a low-privileged account could exploit this flaw to gain higher-level permissions and ultimately achieve complete control over the WordPress site. The issue has been resolved in version 2.8.0 and users should upgrade immediately.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings