CVE-2024-38775: WordPress CTX Feed plugin <= 6.5.6 - Arbitrary Options Update vulnerability
Published Aug 1, 2024
·Updated
Improper Privilege Management vulnerability in WebAppick CTX Feed allows Privilege Escalation.This issue affects CTX Feed: from n/a through 6.5.6.
Affected Software
2 affected components
WebAppick CTX Feed>=n/a, <=6.5.6
WordPress CTX Feed<=6.5.6
Remediation
Information
Update to 6.5.7 or a higher version.
Event History
Aug 1, 2024
CVE Published
via MITRE·08:48 PM
Data Sourced
via MITRE·08:48 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-38775?
CVE-2024-38775 is classified as a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2024-38775?
To resolve CVE-2024-38775, upgrade WebAppick CTX Feed to version 6.5.7 or later.
3
What type of vulnerability is CVE-2024-38775?
CVE-2024-38775 is an Improper Privilege Management vulnerability that allows for privilege escalation.
4
Which versions of WebAppick CTX Feed are affected by CVE-2024-38775?
CVE-2024-38775 affects WebAppick CTX Feed versions from n/a up to and including 6.5.6.
5
Is the vulnerability CVE-2024-38775 present in other products?
CVE-2024-38775 is also present in the WordPress version of the CTX Feed plugin up to version 6.5.6.