plugin

Captcha Bws Vulnerabilities

3 known security issues reported for the Captcha Bws WordPress plugin. Most recent disclosed May 17, 2024.

2 medium

Running Captcha Bws on your site? Check whether your installed version is affected.

Scan your site free

Captcha by BestWebSoft &#8211; Advanced Spam Protection, Math &amp; OCR-Friendly Captcha for Site Forms [captcha-bws] < 5.2.1

unknown

[en] Guessable CAPTCHA vulnerability in BestWebSoft Captcha by BestWebSoft allows Functionality Bypass.This issue affects Captcha by BestWebSoft: from n/a through 5.2.0.

Affected:
up to 5.2.1
Fixed in:
5.2.1
Disclosed:
May 17, 2024

CVE-2024-31295 on NVD →

Captcha by BestWebSoft <= 5.2.0 - Captcha Bypass

medium

The Captcha by BestWebSoft for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 5.2.0. This makes it possible for unauthenticated attackers to bypass the Captcha Verification.

CVSS:
5.3
Affected:
up to 5.2.0
Fixed in:
5.2.1
Disclosed:
Apr 5, 2024

CVE-2024-31295 on NVD →

BestWebSoft Captcha <= 4.0.6 - CAPTCHA Bypass

medium

The BestWebSoft Captcha plugin before 4.0.7 for WordPress allows remote attackers to bypass the CAPTCHA protection mechanism and obtain administrative access via unspecified vectors.

CVSS:
5.3
Affected:
up to 4.0.7
Fixed in:
4.0.7
Disclosed:
Dec 5, 2014

CVE-2014-9283 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database