CVE-2024-49235: WordPress Contact Forms, Live Support, CRM, Video Messages plugin <= 1.10.2 - Sensitive Data Exposure vulnerability
Published Oct 17, 2024
·Updated
Insertion of Sensitive Information Into Sent Data vulnerability in videowhisper Contact Forms, Live Support, CRM, Video Messages live-support-tickets allows Retrieve Embedded Sensitive Data.This issue affects Contact Forms, Live Support, CRM, Video Messages: from n/a through <= 1.10.2.
Affected Software
1 affected component
VideoWhisper Contact Forms, Live Support, CRM, Video Messages (live-support-tickets)<=1.10.2
Event History
Oct 17, 2024
CVE Published
via MITRE·05:24 PM
Data Sourced
via MITRE·05:24 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-49235?
CVE-2024-49235 is rated as a medium severity vulnerability.
2
How do I fix CVE-2024-49235?
To fix CVE-2024-49235, upgrade your VideoWhisper software to version 1.10.3 or later.
3
What software is affected by CVE-2024-49235?
CVE-2024-49235 affects VideoWhisper Contact Forms, Live Support, CRM, and Video Messages versions up to 1.10.2.
4
What type of vulnerability is CVE-2024-49235?
CVE-2024-49235 is an insertion of sensitive information into sent data vulnerability.
5
What are the potential impacts of CVE-2024-49235?
The potential impacts of CVE-2024-49235 include the unauthorized retrieval of embedded sensitive data.