CVE-2024-37482: WordPress The Post Grid plugin <= 7.7.4 - Broken Access Control vulnerability
Published Nov 1, 2024
·Updated
Missing Authorization vulnerability in RadiusTheme The Post Grid the-post-grid.This issue affects The Post Grid: from n/a through <= 7.7.4.
Affected Software
1 affected component
RadiusTheme The Post Grid<=7.7.4
Remediation
Information
Update to 7.7.5 or a higher version.
Event History
Nov 1, 2024
CVE Published
via MITRE·02:18 PM
Data Sourced
via MITRE·02:18 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-37482?
CVE-2024-37482 is classified as a high severity vulnerability due to its potential to allow unauthorized access to sensitive data.
2
How do I fix CVE-2024-37482?
To fix CVE-2024-37482, update the Post Grid plugin to version 7.7.5 or later where the authorization issue has been resolved.
3
Which versions are affected by CVE-2024-37482?
CVE-2024-37482 affects all versions of the Post Grid plugin from n/a through 7.7.4.
4
What type of vulnerability is CVE-2024-37482?
CVE-2024-37482 is a missing authorization vulnerability that exploits incorrectly configured access control security levels.
5
Who is impacted by CVE-2024-37482?
Users of the post grid functionality in RadiusTheme or WordPress with versions up to 7.7.4 are impacted by CVE-2024-37482.