CVE-2024-32600: WordPress Master Slider plugin <= 3.9.5 - PHP Object Injection vulnerability
Published Apr 18, 2024
·Updated
Deserialization of Untrusted Data vulnerability in Averta Master Slider.This issue affects Master Slider: from n/a through 3.9.5.
Affected Software
3 affected components
Averta Master Slider>=n/a, <=3.9.5
WordPress Master Slider<=3.9.5
averta Master Slider Wordpress<3.9.7
Remediation
Information
Update to 3.9.7 or a higher version.
Event History
Apr 18, 2024
CVE Published
via MITRE·10:18 AM
Data Sourced
via MITRE·10:18 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-32600?
The severity of CVE-2024-32600 is classified as high due to its potential for remote code execution.
2
How do I fix CVE-2024-32600?
To fix CVE-2024-32600, update the Averta Master Slider plugin to the latest version beyond 3.9.5.
3
What versions of Master Slider are affected by CVE-2024-32600?
CVE-2024-32600 affects Averta Master Slider versions from n/a through 3.9.5.
4
What type of vulnerability is CVE-2024-32600?
CVE-2024-32600 is a deserialization of untrusted data vulnerability.
5
Is CVE-2024-32600 specific to any platform?
CVE-2024-32600 is specific to the Averta Master Slider plugin used on WordPress.