CVE-2023-47183

WordPress GiveWP plugin <= 2.33.1 - Broken Access Control vulnerability

Missing Authorization vulnerability in GiveWP GiveWP allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects GiveWP: from n/a through 2.33.1.


We have discovered 7,476 live websites that are affected by CVE-2023-47183.

Test my site




Affected Software

Product  GiveWP
Category Wordpress Plugins
Vulnerable Domains7,476 live websites (20.51% of GiveWP install base)
Vulnerable Versions
  • from 0 through 2.33.1
Vulnerable Versions Count176 versions ( 74.26% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jan 2, 2025
  • Updated - Jan 3, 2025

Credits

  • Revan Arifio (Patchstack Alliance) (finder)

CVE-2023-47183 usage by Country

United States3,467 websites



Germany789 websites
France471 websites
GB384 websites
Italy221 websites
Cyprus165 websites
Canada162 websites
Australia130 websites
Spain110 websites
South Africa103 websites

CVE-2023-47183 usage by TLD

.org2,888 websites
.com1,924 websites
.de198 websites
.it175 websites
.fr137 websites
.net132 websites
.ca130 websites
.org.uk125 websites
.co.uk104 websites
.pl72 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-47183

Top websites that are affected by CVE-2023-47183. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*************.sk United States**,***
********.org United States**,***
*********.org United States**,***
****************.org Germany**,***
*******.org United States**,***
**************.com Australia**,***
****.org United States**,***
**********.net United States***,***
***.***.uk United States***,***
****************.org United States***,***
See full domain list

FAQ

CVE-2023-47183 is Missing Authorization in GiveWP
A total of 7,476 websites have been identified as vulnerable to CVE-2023-47183, discovered through global website indexing conducted by WebTechSurvey.
GiveWP is susceptible to CVE-2023-47183 vulnerability.
GiveWP versions before, and including, 2.33.1 are vulnerable to CVE-2023-47183.