CVE-2024-32804: WordPress WP GoToWebinar plugin <= 14.46 - Broken Access Control vulnerability
Published Jun 9, 2024
·Updated
Missing Authorization vulnerability in Martin Gibson WP GoToWebinar.This issue affects WP GoToWebinar: from n/a through 14.46.
Affected Software
2 affected components
Martin Gibson WP GoToWebinar<=14.46
WordPress WP GoToWebinar<=14.46
Remediation
Information
Update to 15.1 or a higher version.
Event History
Jun 9, 2024
CVE Published
via MITRE·12:49 PM
Data Sourced
via MITRE·12:49 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32804?
CVE-2024-32804 is classified as a missing authorization vulnerability that could lead to unauthorized access.
2
How do I fix CVE-2024-32804?
To fix CVE-2024-32804, update the WP GoToWebinar plugin to a version later than 14.46.
3
What versions of WP GoToWebinar are affected by CVE-2024-32804?
CVE-2024-32804 affects all versions of WP GoToWebinar from n/a through 14.46.
4
Is CVE-2024-32804 a critical vulnerability?
While the severity can depend on the context, missing authorization vulnerabilities potentially allow unauthorized actions, making CVE-2024-32804 a serious concern.
5
Who is the vendor for CVE-2024-32804?
The vendor for CVE-2024-32804 is Martin Gibson.