CVE-2024-37269: WordPress Masterstudy Elementor Widgets plugin <= 1.2.2 - Unauthenticated Broken Access Control vulnerability
Published Nov 1, 2024
·Updated
Missing Authorization vulnerability in StylemixThemes Masterstudy Elementor Widgets allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Masterstudy Elementor Widgets: from n/a through 1.2.2.
Affected Software
2 affected components
StylemixThemes Masterstudy Elementor Widgets>=n/a, <=1.2.2
WordPress Masterstudy Elementor Widgets<=1.2.2
Remediation
Information
Update to 1.2.3 or a higher version.
Event History
Nov 1, 2024
CVE Published
via MITRE·02:18 PM
Data Sourced
via MITRE·02:18 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-37269?
CVE-2024-37269 is rated as a high-severity vulnerability due to its potential for unauthorized access.
2
How do I fix CVE-2024-37269?
To fix CVE-2024-37269, upgrade the Masterstudy Elementor Widgets plugin to the latest version beyond 1.2.2.
3
What versions of Masterstudy Elementor Widgets are affected by CVE-2024-37269?
CVE-2024-37269 affects all versions of Masterstudy Elementor Widgets from n/a to 1.2.2.
4
What type of vulnerability is CVE-2024-37269?
CVE-2024-37269 is a Missing Authorization vulnerability resulting from incorrectly configured access controls.
5
Who is the vendor of the software affected by CVE-2024-37269?
The vendor of the software affected by CVE-2024-37269 is StylemixThemes.