CVE-2024-37484: WordPress Zephyr Project Manager plugin <= 3.3.97 - Privilege Escalation vulnerability
Published Jul 9, 2024
·Updated
Improper Privilege Management vulnerability in Dylan James Zephyr Project Manager allows Privilege Escalation.This issue affects Zephyr Project Manager: from n/a through 3.3.97.
Affected Software
3 affected components
Zephyr-one Zephyr Project Manager Wordpress<3.3.99
Dylan James Zephyr Project Manager<=3.3.97
WordPress Zephyr Project Manager plugin<=3.3.97
Remediation
Information
Update to 3.3.99 or a higher version.
Event History
Jul 9, 2024
CVE Published
via MITRE·11:47 AM
Data Sourced
via MITRE·11:47 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-37484?
CVE-2024-37484 has been classified as a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2024-37484?
To fix CVE-2024-37484, upgrade your Zephyr Project Manager to version 3.3.98 or higher.
3
What applications are affected by CVE-2024-37484?
CVE-2024-37484 affects Zephyr Project Manager versions from n/a through 3.3.97.
4
What type of vulnerability is CVE-2024-37484?
CVE-2024-37484 is classified as an improper privilege management vulnerability.
5
Who is the vendor for CVE-2024-37484?
The vendor for CVE-2024-37484 is Dylan James, responsible for Zephyr Project Manager.