CVE-2024-32955: WordPress FV Flowplayer Video Player plugin <= 7.5.43.7212 - Server Side Request Forgery (SSRF) vulnerability
Published Apr 24, 2024
·Updated
Server-Side Request Forgery (SSRF) vulnerability in Foliovision FV Flowplayer Video Player.This issue affects FV Flowplayer Video Player: from n/a through 7.5.43.7212.
Affected Software
1 affected component
FolioVision FV Flowplayer Video Player<=7.5.43.7212
Remediation
Information
Update to 7.5.45.7212 or a higher version.
Event History
Apr 24, 2024
CVE Published
via MITRE·07:05 AM
Data Sourced
via MITRE·07:05 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32955?
CVE-2024-32955 is classified as a Server-Side Request Forgery (SSRF) vulnerability.
2
How do I fix CVE-2024-32955?
To fix CVE-2024-32955, you should update the FV Flowplayer Video Player to a version beyond 7.5.43.7212.
3
What versions of FV Flowplayer Video Player are affected by CVE-2024-32955?
CVE-2024-32955 affects FV Flowplayer Video Player versions from n/a through 7.5.43.7212.
4
Is CVE-2024-32955 exploitable remotely?
Yes, CVE-2024-32955 is exploitable remotely due to its nature as an SSRF vulnerability.
5
What are the potential impacts of CVE-2024-32955?
The potential impacts of CVE-2024-32955 include unauthorized access to internal systems through crafted requests.