CVE-2024-54382: WordPress Bold Page Builder plugin <= 5.1.5 - Path Traversal vulnerability
Published Dec 16, 2024
·Updated
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Path Traversal.This issue affects Bold Page Builder: from n/a through <= 5.1.5.
Affected Software
1 affected component
Bold-themes Bold Page Builder Wordpress<5.1.6
Remediation
Information
Update the WordPress Bold Page Builder plugin to the latest available version (at least 5.1.6).
Event History
Dec 16, 2024
CVE Published
via MITRE·02:31 PM
Data Sourced
via MITRE·02:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-54382?
The severity of CVE-2024-54382 is considered high due to its potential for allowing unauthorized file access via path traversal.
2
How do I fix CVE-2024-54382?
To fix CVE-2024-54382, update Bold Page Builder to version 5.1.6 or later.
3
What versions of Bold Page Builder are affected by CVE-2024-54382?
CVE-2024-54382 affects Bold Page Builder versions prior to 5.1.6.
4
What type of vulnerability is CVE-2024-54382?
CVE-2024-54382 is a 'Path Traversal' vulnerability that allows unauthorized directory access.
5
Who should be concerned about CVE-2024-54382?
Users and administrators of Bold Page Builder versions prior to 5.1.6 should be concerned about CVE-2024-54382.