CVE-2024-50423: WordPress Templately plugin <= 3.1.5 - Broken Access Control vulnerability
Missing Authorization vulnerability in WPDeveloper Templately templately allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Templately: from n/a through <= 3.1.5.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-50423?
CVE-2024-50423 is classified as a Missing Authorization vulnerability affecting Templately versions up to 3.1.5.
How do I fix CVE-2024-50423?
To mitigate CVE-2024-50423, update Templately to the latest version that addresses the access control security issue.
Who is affected by CVE-2024-50423?
Users of Templately, specifically those using versions up to and including 3.1.5, are affected by CVE-2024-50423.
What types of attacks can exploit CVE-2024-50423?
CVE-2024-50423 can be exploited to gain unauthorized access due to incorrectly configured access control security levels.
Is there a workaround for CVE-2024-50423?
While the best solution is to update Templately, users may consider strengthening access control policies temporarily until the update is applied.