HomeDefault status
unaffected
Any version before 7.6.10
affected
Description
The Admin and Site Enhancements (ASE) WordPress plugin before 7.6.10 uses a hardcoded password in its Password Protection feature, allowing attacker to bypass the protection offered via a crafted request
Problem types
CWE-259 Use of Hard-coded Password
Product status
Any version before 7.6.10
Credits
Dogus Demirkiran
WPScan
References
wpscan.com/...rability/19051d08-16b0-466c-976b-be7b076e8e92/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.