First published: Thu Oct 17 2024(Updated: )
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Moridrin SSV MailChimp allows PHP Local File Inclusion.This issue affects SSV MailChimp: from n/a through 3.1.5.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
MailChimp | >=n/a<=3.1.5 | |
WordPress SSV MailChimp | <=3.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-49285 is high due to the potential for Local File Inclusion vulnerabilities.
To fix CVE-2024-49285, update the SSV MailChimp plugin to a version higher than 3.1.5.
CVE-2024-49285 affects all versions of SSV MailChimp from n/a up to 3.1.5.
CVE-2024-49285 can potentially lead to remote code execution through local file inclusion.
CVE-2024-49285 impacts Moridrin SSV MailChimp and WordPress SSV MailChimp versions up to 3.1.5.