First published: Wed Mar 20 2024(Updated: )
Missing Authorization vulnerability in Olive Themes Olive One Click Demo Import allows importing settings and data, ultimately leading to XSS.This issue affects Olive One Click Demo Import: from n/a through 1.1.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Olive One Click Demo Import | <=1.1.1 | |
WordPress One Click Demo Import | <=1.1.1 |
Update to 1.1.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-2702 is classified as a missing authorization vulnerability that can lead to cross-site scripting (XSS).
To fix CVE-2024-2702, update Olive One Click Demo Import to version 1.1.2 or later.
CVE-2024-2702 affects Olive One Click Demo Import versions up to and including 1.1.1.
Yes, CVE-2024-2702 can potentially lead to unauthorized access and manipulation of user data through XSS.
More information about CVE-2024-2702 can typically be found in security bulletins or vulnerability databases.