CVE-2019-17232: High severity etoilewebdesign ultimate faq vulnerability
Published Oct 7, 2019
·Updated
Functions/EWDUFAQImport.php in the ultimate-faqs plugin through 1.8.24 for WordPress allows unauthenticated options import.
Affected Software
1 affected component
Etoilewebdesign Ultimate Faq Wordpress<=1.8.24
Event History
Oct 7, 2019
CVE Published
via MITRE·10:11 PM
Data Sourced
via MITRE·10:11 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-17232.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Functions/EWD_UFAQ_Import.php in the ultimate-faqs plugin through 1.8.24 for WordPress allows unauthenticated options import.'
3
What is the affected software for this vulnerability?
The affected software for this vulnerability is Etoilewebdesign Ultimate Faq plugin for WordPress version 1.8.24 and below.
4
What is the severity of CVE-2019-17232?
The severity of CVE-2019-17232 is high with a CVSS score of 7.5.
5
How can I fix the CVE-2019-17232 vulnerability?
To fix the CVE-2019-17232 vulnerability, update the ultimate-faqs plugin to version 1.8.25 or later.