CVE-2024-22139: WordPress WordPress Manutenção plugin <= 1.0.6 - Bypass vulnerability
Published May 17, 2024
·Updated
Authentication Bypass by Spoofing vulnerability in Filipe Seabra WordPress Manutenção allows Functionality Bypass.This issue affects WordPress Manutenção: from n/a through 1.0.6.
Affected Software
2 affected components
Filipe Seabra WordPress Manutenção<=1.0.6
WordPress WordPress Manutenção<=1.0.6
Remediation
Information
Update to 1.0.7 or a higher version.
Event History
May 17, 2024
CVE Published
via MITRE·08:46 AM
Data Sourced
via MITRE·08:46 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-22139?
CVE-2024-22139 is rated as a high severity issue due to its potential to allow authentication bypass.
2
How do I fix CVE-2024-22139?
To fix CVE-2024-22139, it is recommended to update the WordPress Manutenção plugin to a more secure version beyond 1.0.6.
3
What software is affected by CVE-2024-22139?
CVE-2024-22139 affects the WordPress Manutenção plugin versions up to and including 1.0.6.
4
What type of vulnerability is CVE-2024-22139?
CVE-2024-22139 is classified as an authentication bypass by spoofing vulnerability.
5
What impact does CVE-2024-22139 have on my website?
The vulnerability allows attackers to bypass authentication mechanisms, potentially compromising site security and user data.