CVE-2022-45356

WordPress Betheme premium theme <= 26.6.1 - Broken Access Control vulnerability

Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1.


We have discovered 36,472 live websites that are affected by CVE-2022-45356.

Run a Free Instant Scan




Affected Software

Product  BeTheme
Category Wordpress Themes
Vulnerable Domains36,472 live websites (43% of BeTheme install base)
Vulnerable Versions
  • from 0 through 26.6.1
Vulnerable Versions Count242 versions ( 69% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Mar 25, 2024
  • Updated - Aug 8, 2024

Credits

  • Dave Jong (Patchstack) (finder)

Website Distribution by Country

Number of websites using CVE-2022-45356
United States7,667 websites



Germany4,172 websites
Italy2,607 websites
Brazil2,054 websites
France2,025 websites
Poland1,261 websites
GB1,178 websites
Spain1,116 websites
Russia1,066 websites
Netherlands1,030 websites

Website Distribution by TLD

Number of websites using CVE-2022-45356
.com13,008 websites
.de2,391 websites
.com.br2,009 websites
.it1,870 websites
.fr1,266 websites
.org1,100 websites
.pl966 websites
.nl904 websites
.ru846 websites
.co.uk701 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2022-45356

Top websites that are affected by CVE-2022-45356. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*********.nl United States*,***
******.fr France**,***
**********.com United States**,***
**********.com United States**,***
***********.com Canada***,***
*******.**.ke Kenya***,***
**********.com United States***,***
*****.com Pakistan***,***
************.com Canada***,***
***********************.***.au Australia***,***
See full domain list

FAQ

CVE-2022-45356 is Missing Authorization in BeTheme
A total of 36,472 websites have been identified as vulnerable to CVE-2022-45356, based on global website indexing conducted by WebTechSurvey.
The BeTheme is affected by the CVE-2022-45356 vulnerability.
BeTheme versions up to and including 26.6.1 are vulnerable to CVE-2022-45356.