CVE-2024-1710: Addon Library <= 1.3.76 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Upload
The Addon Library plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the onAjaxAction function action in all versions up to, and including, 1.3.76. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform several unauthorized actions including uploading arbitrary files.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
wordpress/Add-on Library pluginto a version that resolves this vulnerability.Fixed in 1.3.76
Event History
Frequently Asked Questions
What is the severity of CVE-2024-1710?
CVE-2024-1710 has a moderate severity as it allows authenticated attackers to access unauthorized data.
How is CVE-2024-1710 exploited?
CVE-2024-1710 can be exploited by authenticated users with subscriber-level access and above due to a missing capability check.
What versions of the Addon Library plugin are affected by CVE-2024-1710?
All versions of the Addon Library plugin for WordPress up to and including 1.3.76 are affected by CVE-2024-1710.
How do I fix CVE-2024-1710?
To fix CVE-2024-1710, update the Addon Library plugin to a version after 1.3.76 where the vulnerability has been patched.
Who can exploit CVE-2024-1710?
Authenticated users with subscriber-level permissions or higher can exploit CVE-2024-1710.