CVE-2024-43266: WordPress WP Job Portal plugin <= 2.1.8 - Insecure Direct Object References (IDOR) vulnerability
Published Aug 18, 2024
·Updated
Authorization Bypass Through User-Controlled Key vulnerability in wpjobportal WP Job Portal wp-job-portal.This issue affects WP Job Portal: from n/a through <= 2.1.8.
Affected Software
3 affected components
WP Job Portal WP Job Portal>=n/a, <=2.1.6
WordPress WP Job Portal<=2.1.6
wpjobportal Wp Job Portal Wordpress<2.1.9
Event History
Aug 18, 2024
CVE Published
via MITRE·09:34 PM
Data Sourced
via MITRE·09:34 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-43266?
The CVE-2024-43266 vulnerability has a critical severity rating due to the potential for unauthorized access.
2
How do I fix CVE-2024-43266?
To fix CVE-2024-43266, upgrade WP Job Portal to version 2.1.7 or later.
3
What products are affected by CVE-2024-43266?
CVE-2024-43266 affects WP Job Portal versions from n/a through 2.1.6.
4
What type of vulnerability is CVE-2024-43266?
CVE-2024-43266 is classified as an Authorization Bypass Through User-Controlled Key vulnerability.
5
What implications does CVE-2024-43266 have for users?
Users of affected WP Job Portal versions may face unauthorized access, potentially leading to data exposure.