Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-2159
HistoryJun 09, 2023 - 6:16 a.m.

Default credentials

2023-06-0906:16:00
PRIOn knowledge base
www.prio-n.com
5
default credentials
vulnerability
wordpress
maintenance mode bypass
nvd

5.1 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.9%

The CMP – Coming Soon & Maintenance plugin for WordPress is vulnerable to Maintenance Mode Bypass in versions up to, and including, 4.1.7. A correct cmp_bypass GET parameter in the URL (equal to the md5-hashed home_url in the default setting) allows users to visit a site placed in maintenance mode thus bypassing the plugin’s provided feature.

CPENameOperatorVersion
cmplt4.1.8

5.1 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.9%

Related for PRION:CVE-2023-2159