CVE-2024-32712: WordPress Podlove Podcast Publisher plugin <= 4.0.14 - Broken Access Control vulnerability
Published May 9, 2024
·Updated
Missing Authorization vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast Publisher: from n/a through 4.0.14.
Affected Software
3 affected components
podlove Podlove Podcast Publisher WordPress<4.0.15
podlove Podcast Publisher>=4.0.14
WordPress Podlove Podcast Publisher<=4.0.14
Remediation
Information
Update to 4.0.15 or a higher version.
Event History
May 9, 2024
CVE Published
via MITRE·12:25 PM
Data Sourced
via MITRE·12:25 PM
RemedyDescriptionSeverityWeakness
May 14, 2024
Data Sourced
via NVD·03:36 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-32712?
CVE-2024-32712 is categorized as a Missing Authorization vulnerability with potential for unauthorized access.
2
How do I fix CVE-2024-32712?
To fix CVE-2024-32712, upgrade Podlove Podcast Publisher to version 4.0.15 or later.
3
What versions of Podlove Podcast Publisher are affected by CVE-2024-32712?
CVE-2024-32712 affects Podlove Podcast Publisher versions from n/a through 4.0.14.
4
Can CVE-2024-32712 be exploited remotely?
Yes, CVE-2024-32712 can be exploited remotely due to missing authorization controls.
5
What type of vulnerability is CVE-2024-32712 classified as?
CVE-2024-32712 is classified as a Missing Authorization vulnerability.