CVE-2024-32681: WordPress Prime Slider plugin <= 3.13.2 - Broken Access Control vulnerability
Published Apr 22, 2024
·Updated
Missing Authorization vulnerability in BdThemes Prime Slider – Addons For Elementor.This issue affects Prime Slider – Addons For Elementor: from n/a through 3.13.2.
Affected Software
3 affected components
bdthemes Prime Slider – Addons For Elementor<=3.13.2
WordPress Prime Slider<=3.13.2
BdThemes Prime Slider Wordpress<3.13.3
Remediation
Information
Update to 3.13.3 or a higher version.
Event History
Apr 22, 2024
CVE Published
via MITRE·10:41 AM
Data Sourced
via MITRE·10:41 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-32681?
CVE-2024-32681 has a moderate severity rating due to missing authorization controls.
2
How do I fix CVE-2024-32681?
To fix CVE-2024-32681, update the Prime Slider – Addons For Elementor to version 3.13.3 or later.
3
Which versions are affected by CVE-2024-32681?
CVE-2024-32681 affects versions of Prime Slider – Addons For Elementor from n/a up to 3.13.2.
4
What type of vulnerability is CVE-2024-32681?
CVE-2024-32681 is a Missing Authorization vulnerability that allows unauthorized access.
5
Who is the vendor associated with CVE-2024-32681?
The vendor associated with CVE-2024-32681 is BdThemes, the developer of the Prime Slider – Addons For Elementor.