CVE-2024-43250: WordPress Bit Form Pro plugin <= 2.6.4 - Authenticated Plugin Settings Change vulnerability
Published Aug 19, 2024
·Updated
Incorrect Authorization vulnerability in Bit Apps Bit Form Pro bitformpro allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Bit Form Pro: from n/a through 2.6.4.
Affected Software
1 affected component
Bitapps Bit Form Wordpress<=2.6.4
Event History
Aug 19, 2024
CVE Published
via MITRE·05:21 PM
Data Sourced
via MITRE·05:21 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-43250?
The severity of CVE-2024-43250 is classified as medium due to potential unauthorized access.
2
How do I fix CVE-2024-43250?
To fix CVE-2024-43250, update Bit Form Pro to the latest version beyond 2.6.4.
3
What type of vulnerability is CVE-2024-43250?
CVE-2024-43250 is an Incorrect Authorization vulnerability affecting Bit Form Pro.
4
Which versions of Bit Form Pro are affected by CVE-2024-43250?
Versions of Bit Form Pro from n/a through 2.6.4 are affected by CVE-2024-43250.
5
What are the potential impacts of CVE-2024-43250?
CVE-2024-43250 could allow attackers to access functionality not properly constrained by access control lists.