CVE-2024-32822: WordPress Reviews Plus plugin <= 1.3.4 - Broken Access Control vulnerability
Published Apr 26, 2024
·Updated
Missing Authorization vulnerability in impleCode Reviews Plus.This issue affects Reviews Plus: from n/a through 1.3.4.
Affected Software
1 affected component
impleCode Reviews Plus<=1.3.4
Remediation
Information
Update to 1.3.5 or a higher version.
Event History
Apr 26, 2024
CVE Published
via MITRE·11:21 AM
Data Sourced
via MITRE·11:21 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32822?
CVE-2024-32822 is classified as a Missing Authorization vulnerability, which can lead to unauthorized access.
2
How do I fix CVE-2024-32822?
To fix CVE-2024-32822, update the Reviews Plus software to version 1.3.5 or later.
3
Which versions of Reviews Plus are affected by CVE-2024-32822?
CVE-2024-32822 affects Reviews Plus versions up to and including 1.3.4.
4
What type of vulnerability is CVE-2024-32822?
CVE-2024-32822 is a Broken Access Control vulnerability due to missing authorization mechanisms.
5
Is CVE-2024-32822 exploitable by attackers?
Yes, attackers can exploit CVE-2024-32822 to potentially gain unauthorized access to restricted functionalities.