CVE-2024-50500: WordPress Phlox Core Elements plugin <= 2.17.4 - Broken Access Control vulnerability
Missing Authorization vulnerability in averta Shortcodes and extra features for Phlox theme auxin-elements allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Shortcodes and extra features for Phlox theme: from n/a through <= 2.17.4.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-50500?
CVE-2024-50500 is considered a critical severity vulnerability due to its potential for unauthorized access.
How do I fix CVE-2024-50500?
To fix CVE-2024-50500, update the Averta Phlox theme to the latest version that addresses the access control issues.
What products are affected by CVE-2024-50500?
CVE-2024-50500 affects versions of the Averta Phlox theme from n/a through 2.17.2.
What type of vulnerability is CVE-2024-50500?
CVE-2024-50500 is a missing authorization vulnerability that allows exploitation of incorrect access control configurations.
Can CVE-2024-50500 lead to data exposure?
Yes, CVE-2024-50500 can potentially lead to unauthorized data exposure due to weak access controls.