First published: Fri Nov 01 2024(Updated: )
Missing Authorization vulnerability in WP Sunshine Sunshine Photo Cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through 3.2.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sunshine Photo Cart Free Client Galleries for Photographers | <=3.2.1 | |
WordPress Sunshine Photo Cart | <=3.2.1 |
Update to 3.2.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-43136 is considered high due to its potential for unauthorized access to sensitive functionalities.
To fix CVE-2024-43136, update the Sunshine Photo Cart plugin to the latest version or apply the necessary configuration changes to enhance access control.
CVE-2024-43136 affects all versions of Sunshine Photo Cart up to and including version 3.2.1.
CVE-2024-43136 is categorized as a Missing Authorization vulnerability, which allows exploitation of incorrectly configured access controls.
Users of the WP Sunshine Sunshine Photo Cart plugin, specifically those using versions up to 3.2.1, are impacted by CVE-2024-43136.