CVE-2024-30492: WordPress Export and Import Users and Customers plugin <= 2.5.2 - Path Traversal vulnerability
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WebToffee Import Export WordPress Users.This issue affects Import Export WordPress Users: from n/a through 2.5.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30492?
CVE-2024-30492 has a moderate severity rating due to its potential for path traversal exploitation in affected versions of the plugin.
How do I fix CVE-2024-30492?
To fix CVE-2024-30492, update the WebToffee Import Export WordPress Users plugin to version 2.5.3 or later.
What versions of software are affected by CVE-2024-30492?
CVE-2024-30492 affects WebToffee Import Export WordPress Users versions up to and including 2.5.2.
What type of vulnerability is CVE-2024-30492?
CVE-2024-30492 is classified as a Path Traversal vulnerability, allowing unauthorized access to files in restricted directories.
What impact does CVE-2024-30492 have on my website?
CVE-2024-30492 could allow attackers to access sensitive files on your server, which may lead to further exploitation.