First published: Thu Oct 17 2024(Updated: )
Insertion of Sensitive Information Into Sent Data vulnerability in VideoWhisper.Com Contact Forms, Live Support, CRM, Video Messages allows Retrieve Embedded Sensitive Data.This issue affects Contact Forms, Live Support, CRM, Video Messages: from n/a through 1.10.2.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
VideoWhisper Contact Forms | <=1.10.2 | |
VideoWhisper Live Support | <=1.10.2 | |
VideoWhisper CRM | <=1.10.2 | |
VideoWhisper Video Messages | <=1.10.2 | |
WordPress Contact Forms | <=1.10.2 | |
WordPress Live Support | <=1.10.2 | |
WordPress CRM | <=1.10.2 | |
WordPress Video Messages | <=1.10.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-49235 is rated as a medium severity vulnerability.
To fix CVE-2024-49235, upgrade your VideoWhisper software to version 1.10.3 or later.
CVE-2024-49235 affects VideoWhisper Contact Forms, Live Support, CRM, and Video Messages versions up to 1.10.2.
CVE-2024-49235 is an insertion of sensitive information into sent data vulnerability.
The potential impacts of CVE-2024-49235 include the unauthorized retrieval of embedded sensitive data.