CVE-2023-6615

Typecho manage-users.php information disclosure

A vulnerability, which was classified as problematic, has been found in Typecho 1.2.1. Affected by this issue is some unknown functionality of the file /admin/manage-users.php. The manipulation of the argument page leads to information disclosure. The exploit has been disclosed to the public and may be used. VDB-247250 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.


We have discovered 961 live websites that are affected by CVE-2023-6615.

Run a Free Instant Scan




Affected Software

Product  Typecho
Category Blogs
Vulnerable Domains961 live websites (100% of Typecho install base)
Vulnerable Versions
  • from 1.2.1 through 1.2.1
Vulnerable Versions Count0 versions ( less than 0.1% of all versions)


Common Weakness Enumeration

CWE-200 Exposure of Sensitive Information to an Unauthorized Actor



Details

  • Published - Dec 8, 2023
  • Updated - Aug 2, 2024

Credits

  • JTZ- (VulDB User) (analyst)

Website Distribution by Country

Number of websites using CVE-2023-6615
United States257 websites



China460 websites
Singapore117 websites
Hong Kong60 websites
Canada15 websites
GB8 websites
Japan8 websites
Germany3 websites
France3 websites

Website Distribution by TLD

Number of websites using CVE-2023-6615
.com394 websites
.cn192 websites
.net70 websites
.org24 websites
.com.cn9 websites
.info5 websites
.de2 websites
.io2 websites
.ru1 websites
.ca1 websites

Websites affected by CVE-2023-6615

Top websites that are affected by CVE-2023-6615. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*******.org United States**,***
*****.com Singapore**,***
********.net United States***,***
*******.com China***,***
******.com Hong Kong***,***
***.im United States***,***
****.******.com Singapore***,***
*****.net China***,***
*********.com Singapore***,***
****.***.cn China***,***
See full domain list

FAQ

CVE-2023-6615 is Exposure of Sensitive Information to an Unauthorized Actor in Typecho
A total of 961 websites have been identified as vulnerable to CVE-2023-6615, based on global website indexing conducted by WebTechSurvey.
The Typecho is affected by the CVE-2023-6615 vulnerability.
Typecho versions up to and including 1.2.1 are vulnerable to CVE-2023-6615.