CVE-2024-54383: WordPress WooCommerce - PDF Vouchers plugin < 4.9.9 - Broken Authentication vulnerability
Published Dec 18, 2024
·Updated
Incorrect Privilege Assignment vulnerability in wpweb WooCommerce PDF Vouchers woocommerce-pdf-vouchers allows Privilege Escalation.This issue affects WooCommerce PDF Vouchers: from n/a through < 4.9.9.
Affected Software
3 affected components
wpweb WooCommerce PDF Vouchers<4.9.9
WordPress WooCommerce PDF Vouchers<4.9.9
Wpwebelite Woocommerce Pdf Vouchers Wordpress<4.9.9
Remediation
Information
Update the WordPress WooCommerce PDF Vouchers plugin to the latest available version (at least 4.9.9).
Event History
Dec 18, 2024
CVE Published
via MITRE·06:48 PM
Data Sourced
via MITRE·06:48 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-54383?
CVE-2024-54383 is classified as a privilege escalation vulnerability.
2
What are the affected versions for CVE-2024-54383?
CVE-2024-54383 affects WooCommerce PDF Vouchers versions prior to 4.9.9.
3
How do I fix CVE-2024-54383?
To fix CVE-2024-54383, update the WooCommerce PDF Vouchers plugin to version 4.9.9 or later.
4
What type of vulnerability is CVE-2024-54383?
CVE-2024-54383 is an incorrect privilege assignment vulnerability.
5
Who is affected by CVE-2024-54383?
Users of wpweb WooCommerce PDF Vouchers and WordPress WooCommerce PDF Vouchers before version 4.9.9 are affected by CVE-2024-54383.