CVE-2023-45000

WordPress LiteSpeed Cache plugin <= 5.7 - Unauthenticated Broken Access Control on API vulnerability

Missing Authorization vulnerability in LiteSpeed Technologies LiteSpeed Cache.This issue affects LiteSpeed Cache: from n/a through 5.7.


We have discovered 61,830 live websites that are affected by CVE-2023-45000.

Run a Free Instant Scan




Affected Software

Product  Litespeed Cache
Category Cache Tools
Vulnerable Domains61,830 live websites (6.60% of Litespeed Cache install base)
Vulnerable Versions
  • from 0 through 5.7
Vulnerable Versions Count114 versions ( 79% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Apr 16, 2024
  • Updated - Aug 2, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)

Website Distribution by Country

Number of websites using CVE-2023-45000
United States16,747 websites



Turkey4,968 websites
Poland4,158 websites
GB3,576 websites
Canada2,990 websites
Spain2,973 websites
France2,302 websites
Germany1,951 websites
Romania1,909 websites
Vietnam1,788 websites

Website Distribution by TLD

Number of websites using CVE-2023-45000
.com28,605 websites
.pl3,034 websites
.org2,587 websites
.net1,788 websites
.co.uk1,773 websites
.com.br1,372 websites
.ca1,139 websites
.es1,122 websites
.com.au999 websites
.de688 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-45000

Top websites that are affected by CVE-2023-45000. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*******.fm *,***
****.org United States**,***
*********.com Germany**,***
******.com United States**,***
****************.ai United States**,***
**************.org United States**,***
****.******.com United States**,***
***********.net Turkey**,***
*********************.com United States**,***
***************.com United States**,***
See full domain list

FAQ

CVE-2023-45000 is Missing Authorization in Litespeed Cache
A total of 61,830 websites have been identified as vulnerable to CVE-2023-45000, based on global website indexing conducted by WebTechSurvey.
The Litespeed Cache is affected by the CVE-2023-45000 vulnerability.
Litespeed Cache versions up to and including 5.7 are vulnerable to CVE-2023-45000.