CVE-2024-29776: WordPress EventPrime plugin <= 3.3.9 - Cross Site Scripting (XSS) vulnerability
Published Mar 27, 2024
·Updated
Cross Site Scripting (XSS) vulnerability in Metagauss EventPrime.This issue affects EventPrime: from n/a through 3.3.9.
Affected Software
3 affected components
Metagauss EventPrime<=3.3.9
WordPress EventPrime<=3.3.9
Metagauss Eventprime Wordpress<3.4.0
Remediation
Information
Update to 3.4.0 or a higher version.
Event History
Mar 27, 2024
CVE Published
via MITRE·12:48 PM
Data Sourced
via MITRE·12:48 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-29776?
CVE-2024-29776 has a high severity rating due to its potential impact on the security of affected systems.
2
What types of systems are affected by CVE-2024-29776?
CVE-2024-29776 affects Metagauss EventPrime versions from n/a through 3.3.9.
3
How can I fix CVE-2024-29776?
To fix CVE-2024-29776, update Metagauss EventPrime to the latest version beyond 3.3.9.
4
What is Cross Site Scripting (XSS) in the context of CVE-2024-29776?
Cross Site Scripting (XSS) in CVE-2024-29776 allows attackers to inject malicious scripts into web pages viewed by other users.
5
Is CVE-2024-29776 being actively exploited?
While there is no public information indicating active exploitation of CVE-2024-29776, it is crucial to address it promptly due to its severity.