CVE-2023-48758

WordPress JetEngine plugin <= 3.2.4 - Broken Access Control vulnerability

Missing Authorization vulnerability in Crocoblock JetEngine allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JetEngine: from n/a through 3.2.4.


We have discovered 22,249 live websites that are affected by CVE-2023-48758.

Test my site




Affected Software

Product  Crocoblock JetEngine
Category Wordpress Plugins
Vulnerable Domains22,249 live websites (27.16% of Crocoblock JetEngine install base)
Vulnerable Versions
  • from 0 through 3.2.4
Vulnerable Versions Count146 versions ( 70.87% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jan 2, 2025
  • Updated - Jan 2, 2025

Credits

  • Rafie Muhammad (Patchstack) (finder)

CVE-2023-48758 usage by Country

United States7,368 websites



Germany2,242 websites
Brazil1,510 websites
France1,172 websites
Russia793 websites
Spain744 websites
GB664 websites
Cyprus628 websites
Israel563 websites
Netherlands554 websites

CVE-2023-48758 usage by TLD

.com8,084 websites
.com.br2,109 websites
.org749 websites
.de734 websites
.ru646 websites
.nl590 websites
.co.uk456 websites
.it424 websites
.es401 websites
.com.au343 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-48758

Top websites that are affected by CVE-2023-48758. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
**********.com United States**,***
************.com United States**,***
*************.com United States**,***
*********.com United States**,***
*******.com Hong Kong**,***
***********.io United States**,***
*************.com United States**,***
******************.com United States**,***
*******.io United States**,***
**********.com United States**,***
See full domain list

FAQ

CVE-2023-48758 is Missing Authorization in Crocoblock JetEngine
A total of 22,249 websites have been identified as vulnerable to CVE-2023-48758, discovered through global website indexing conducted by WebTechSurvey.
Crocoblock JetEngine is susceptible to CVE-2023-48758 vulnerability.
Crocoblock JetEngine versions before, and including, 3.2.4 are vulnerable to CVE-2023-48758.