CVE-2024-33921: WordPress ReviewX plugin <= 1.6.21 - Broken Access Control vulnerability
Published May 3, 2024
·Updated
Broken Access Control vulnerability in ReviewX.This issue affects ReviewX: from n/a through 1.6.21.
Affected Software
3 affected components
ReviewX ReviewX<=1.6.21
WordPress ReviewX plugin<=1.6.21
WPDeveloper Reviewx Wordpress<1.6.22
Remediation
Information
Update to 1.6.22 or a higher version.
Event History
May 3, 2024
CVE Published
via MITRE·08:27 AM
Data Sourced
via MITRE·08:27 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-33921?
CVE-2024-33921 is classified as a Broken Access Control vulnerability affecting ReviewX versions up to 1.6.21.
2
How do I fix CVE-2024-33921?
To address CVE-2024-33921, update ReviewX to the latest version beyond 1.6.21 that resolves the vulnerability.
3
What are the potential impacts of CVE-2024-33921?
CVE-2024-33921 could allow unauthorized users to access restricted areas or data within the ReviewX plugin.
4
Which versions of ReviewX are affected by CVE-2024-33921?
CVE-2024-33921 affects ReviewX from n/a through version 1.6.21.
5
Who is responsible for addressing CVE-2024-33921?
The vendor, ReviewX, is responsible for releasing a patch or update to fix CVE-2024-33921.