CVE-2023-51682

WordPress MC4WP plugin <= 4.9.9 - Broken Access Control vulnerability

Missing Authorization vulnerability in ibericode MC4WP.This issue affects MC4WP: from n/a through 4.9.9.


We have discovered 38,879 live websites that are affected by CVE-2023-51682.

Run a Free Instant Scan




Affected Software

Product  MailChimp for WordPress
Category Marketing Automation
Vulnerable Domains38,879 live websites (24% of MailChimp for WordPress install base)
Vulnerable Versions
  • from 0 through 4.9.9
Vulnerable Versions Count100 versions ( 80% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jun 11, 2024
  • Updated - Aug 2, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)

Website Distribution by Country

Number of websites using CVE-2023-51682
United States11,469 websites



Germany3,137 websites
Italy2,688 websites
France2,534 websites
GB2,022 websites
Netherlands1,179 websites
Spain1,130 websites
Australia862 websites
Canada861 websites
Brazil714 websites

Website Distribution by TLD

Number of websites using CVE-2023-51682
.com17,939 websites
.org2,115 websites
.it1,782 websites
.co.uk1,003 websites
.de970 websites
.nl929 websites
.fr859 websites
.net812 websites
.com.au705 websites
.com.br662 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-51682

Top websites that are affected by CVE-2023-51682. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
********.com GB*,***
*******.com United States**,***
******.com United States**,***
***********.com GB**,***
********.com United States**,***
************.com United States**,***
*********.com United States**,***
*********.com United States**,***
**************.org United States**,***
************.com United States**,***
See full domain list

FAQ

CVE-2023-51682 is Missing Authorization in MailChimp for WordPress
A total of 38,879 websites have been identified as vulnerable to CVE-2023-51682, based on global website indexing conducted by WebTechSurvey.
The MailChimp for WordPress is affected by the CVE-2023-51682 vulnerability.
MailChimp for WordPress versions up to and including 4.9.9 are vulnerable to CVE-2023-51682.