CVE-2024-43136: WordPress Sunshine Photo Cart plugin <= 3.2.1 - Broken Access Control vulnerability
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart.This issue affects Sunshine Photo Cart: from n/a through <= 3.2.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43136?
The severity of CVE-2024-43136 is considered high due to its potential for unauthorized access to sensitive functionalities.
How do I fix CVE-2024-43136?
To fix CVE-2024-43136, update the Sunshine Photo Cart plugin to the latest version or apply the necessary configuration changes to enhance access control.
What versions are affected by CVE-2024-43136?
CVE-2024-43136 affects all versions of Sunshine Photo Cart up to and including version 3.2.1.
What type of vulnerability is CVE-2024-43136?
CVE-2024-43136 is categorized as a Missing Authorization vulnerability, which allows exploitation of incorrectly configured access controls.
Who is impacted by CVE-2024-43136?
Users of the WP Sunshine Sunshine Photo Cart plugin, specifically those using versions up to 3.2.1, are impacted by CVE-2024-43136.