First published: Fri Nov 01 2024(Updated: )
Missing Authorization vulnerability in Andy Moyle Church Admin allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Church Admin: from n/a through 4.4.4.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Andy Moyle Church Admin | <=4.4.4 | |
WordPress Church Admin | <=4.4.4 |
Update to 4.4.5 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-37440 is classified as a missing authorization vulnerability, which can lead to unauthorized access due to incorrectly configured access controls.
To fix CVE-2024-37440, ensure that proper access control configurations are applied and update to the latest secure version of Church Admin.
CVE-2024-37440 affects all versions of Church Admin up to and including 4.4.4.
The risks of CVE-2024-37440 include potential unauthorized access to sensitive data and functions within the application.
Yes, a patch or update is available to address CVE-2024-37440; reviewing the latest releases from Andy Moyle is recommended.