Description

Missing Authorization vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn): from n/a through 7.6.0.

INFO

Published Date :

2024-12-09T11:31:33.468Z

Last Modified :

2024-12-09T15:04:18.587Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2023-25455 vulnerability.

Vendors Products
Miniorange
  • Wordpress Social Login And Register \(discord\, Google\, Twitter\, Linkedin\)

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact