WordPress Plugin Vulnerabilities

Admin and Site Enhancements (ASE) < 7.6.10 - Password Protection Bypass

Description

The plugin uses a hardcoded password in its Password Protection feature, allowing attacker to bypass the protection offered via a crafted request

Proof of Concept

Affects Plugins

References

Classification

Miscellaneous

Original Researcher
Dogus Demirkiran
Submitter
Dogus Demirkiran
Verified
Yes

Timeline

Publicly Published
2025-04-07 (about 8 months ago)
Added
2025-04-07 (about 8 months ago)
Last Updated
2025-04-07 (about 8 months ago)

Other