First published: Mon Jun 24 2024(Updated: )
Improper Control of Generation of Code ('Code Injection') vulnerability in InstaWP Team InstaWP Connect allows Code Injection.This issue affects InstaWP Connect: from n/a through 0.1.0.38.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
InstaWP Connect | <0.1.0.39 | |
InstaWP Connect | <=0.1.0.38 | |
InstaWP Connect | <=0.1.0.38 |
Update to 0.1.0.39 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-37228 is classified as a Code Injection vulnerability which can lead to unauthorized code execution.
To fix CVE-2024-37228, upgrade InstaWP Connect to version 0.1.0.39 or later.
CVE-2024-37228 affects users of InstaWP Connect versions up to 0.1.0.38.
CVE-2024-37228 involves improper control of code generation, allowing for potential code injection.
Exploitation of CVE-2024-37228 can lead to unauthorized code execution on affected systems.