First published: Tue Jun 11 2024(Updated: )
Missing Authorization vulnerability in Codection Import and export users and customers.This issue affects Import and export users and customers: from n/a through 1.26.5.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Import and Export Users and Customers | <=1.26.5 | |
WordPress Import and Export Users and Customers | <=1.26.5 |
Update to 1.26.6 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-34815 is a high severity vulnerability due to its missing authorization control, which could allow unauthorized access.
To fix CVE-2024-34815, upgrade the Codection Import and export users and customers plugin to the latest version beyond 1.26.5.
CVE-2024-34815 affects all versions of Codection Import and export users and customers from n/a through 1.26.5.
No, CVE-2024-34815 is classified as a missing authorization vulnerability, not a code execution vulnerability.
Yes, CVE-2024-34815 can potentially be exploited remotely by attackers to gain unauthorized access.