CVE-2022-1580

The Site Offline Or Coming Soon Or Maintenance Mode WordPress plugin before 1.5.3 prevents users from accessing a website but does not do so if the URL contained certain keywords. Adding those keywords to the URL's query string would bypass the plugin's main feature.
Configurations

Configuration 1 (hide)

cpe:2.3:a:freehtmldesigns:site_offline:*:*:*:*:*:wordpress:*:*

History

21 Nov 2024, 06:41

Type Values Removed Values Added
References () https://wpscan.com/vulnerability/7b6f91cd-5a00-49ca-93ff-db7220d2630a - Exploit, Third Party Advisory () https://wpscan.com/vulnerability/7b6f91cd-5a00-49ca-93ff-db7220d2630a - Exploit, Third Party Advisory

Information

Published : 2022-09-19 14:15

Updated : 2024-11-21 06:41


NVD link : CVE-2022-1580

Mitre link : CVE-2022-1580

CVE.ORG link : CVE-2022-1580


JSON object : View

Products Affected

freehtmldesigns

  • site_offline
CWE
CWE-639

Authorization Bypass Through User-Controlled Key