QID 731056

Date Published: 2024-01-04

QID 731056: WordPress SMS Plugin Unauthorized Access Vulnerability

Affected Versions:
WordPress SMS plugin versions before 6.0.4.1

QID Detection Logic:
This unauthenticated detection checks for installed vulnerable version for SMS Plugin using Blind Elephant Fingerprint technique.

Successful exploitation of this vulnerability could lead Unauthorized Access to Sensitive Information.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Low - 2.1 severity.
  • Solution
    Customers are advised to upgrade to WP SMS Plugin to remediate this vulnerability.
    Vendor References

    CVEs related to QID 731056

    Software Advisories
    Advisory ID Software Component Link
    WP SMS Plugin URL Logo wordpress.org/plugins/wp-sms/