CVE-2024-32948: WordPress ARMember – Membership Plugin plugin <= 4.0.28 - Broken Access Control vulnerability
Published Apr 24, 2024
·Updated
Missing Authorization vulnerability in Repute Infosystems ARMember.This issue affects ARMember: from n/a through 4.0.28.
Affected Software
3 affected components
Repute Infosystems ARMember<=4.0.28
WordPress ARMember – Membership Plugin<=4.0.28
reputeinfosystems Armember Wordpress<4.0.29
Remediation
Information
Update to 4.0.29 or a higher version.
Event History
Apr 24, 2024
CVE Published
via MITRE·07:03 AM
Data Sourced
via MITRE·07:03 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-32948?
CVE-2024-32948 is classified as a Missing Authorization vulnerability, which has the potential for serious security implications.
2
How do I fix CVE-2024-32948?
To fix CVE-2024-32948, you should update your Repute Infosystems ARMember or WordPress ARMember – Membership Plugin to the latest version beyond 4.0.28.
3
What are the affected versions for CVE-2024-32948?
CVE-2024-32948 affects Repute Infosystems ARMember versions up to and including 4.0.28.
4
What kind of vulnerability is CVE-2024-32948?
CVE-2024-32948 is a Missing Authorization vulnerability, which can allow unauthorized access to restricted features.
5
Who is impacted by CVE-2024-32948?
Users of Repute Infosystems ARMember and WordPress ARMember – Membership Plugin versions up to 4.0.28 are impacted by CVE-2024-32948.