CVE-2023-36681

Missing Authorization vulnerability in Cool Plugins Cryptocurrency Widgets – Price Ticker & Coins List allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cryptocurrency Widgets – Price Ticker & Coins List: from n/a through 2.6.2.
Configurations

Configuration 1 (hide)

cpe:2.3:a:coolplugins:cryptocurrency_widgets:*:*:*:*:free:wordpress:*:*

History

18 Mar 2025, 15:29

Type Values Removed Values Added
First Time Coolplugins cryptocurrency Widgets
Coolplugins
References () https://patchstack.com/database/wordpress/plugin/cryptocurrency-price-ticker-widget/vulnerability/wordpress-cryptocurrency-widgets-price-ticker-coins-list-plugin-2-6-2-broken-access-control-vulnerability?_s_id=cve - () https://patchstack.com/database/wordpress/plugin/cryptocurrency-price-ticker-widget/vulnerability/wordpress-cryptocurrency-widgets-price-ticker-coins-list-plugin-2-6-2-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory
Summary
  • (es) La vulnerabilidad de autorización faltante en Cool Plugins Cryptocurrency Widgets – Price Ticker & Coins List permite explotar los niveles de seguridad de control de acceso configurados incorrectamente. Este problema afecta a los widgets de criptomonedas, el indicador de precios y la lista de monedas: desde n/a hasta 2.6.2.
CPE cpe:2.3:a:coolplugins:cryptocurrency_widgets:*:*:*:*:free:wordpress:*:*

13 Dec 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-13 15:15

Updated : 2025-03-18 15:29


NVD link : CVE-2023-36681

Mitre link : CVE-2023-36681

CVE.ORG link : CVE-2023-36681


JSON object : View

Products Affected

coolplugins

  • cryptocurrency_widgets
CWE
CWE-862

Missing Authorization