CVE-2023-30869

WordPress Easy Digital Downloads Plugin 3.1-3.1.1.4.1 is vulnerable to Privilege Escalation

Improper Authentication vulnerability in Easy Digital Downloads plugin allows unauth. Privilege Escalation. This issue affects Easy Digital Downloads: from 3.1 through 3.1.1.4.1.


We have discovered 289 live websites that are affected by CVE-2023-30869.

Run a Free Instant Scan




Affected Software

Product  Easy Digital Downloads
Category Ecommerce
Vulnerable Domains289 live websites (2.08% of Easy Digital Downloads install base)
Vulnerable Versions
  • from 3.1 through 3.1.1.4.1
Vulnerable Versions Count12 versions ( 8.11% of all versions)


Common Weakness Enumeration

CWE-287 Improper Authentication



Details

  • Published - May 2, 2023
  • Updated - Jan 8, 2025

Credits

  • Tien Nguyen Anh (Patchstack Alliance) (finder)

Website Distribution by Country

Number of websites using CVE-2023-30869
United States110 websites



Iran29 websites
Germany24 websites
Italy20 websites
GB16 websites
France8 websites
Cyprus8 websites
Netherlands7 websites
Denmark7 websites

Website Distribution by TLD

Number of websites using CVE-2023-30869
.com156 websites
.org20 websites
.it14 websites
.de8 websites
.net7 websites
.co.uk7 websites
.fr4 websites
.eu4 websites
.dk3 websites
.ch2 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-30869

Top websites that are affected by CVE-2023-30869. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*************.com United States*,***
************.com India**,***
**********.com United States***,***
*****.*********.com United States***,***
**************.com United States***,***
**********************.com United States***,***
*****.tv Netherlands***,***
**********.com United States***,***
***********.com United States***,***
**************.com United States***,***
See full domain list

FAQ

CVE-2023-30869 is Improper Authentication in Easy Digital Downloads
A total of 289 websites have been identified as vulnerable to CVE-2023-30869, based on global website indexing conducted by WebTechSurvey.
The Easy Digital Downloads is affected by the CVE-2023-30869 vulnerability.
Easy Digital Downloads versions up to and including 3.1.1.4.1 are vulnerable to CVE-2023-30869.