CVE-2024-56295: WordPress Poll Maker plugin <= 5.5.6 - Broken Access Control vulnerability
Missing Authorization vulnerability in Ays Pro Poll Maker poll-maker allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Poll Maker: from n/a through <= 5.5.6.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-56295?
CVE-2024-56295 is classified as a missing authorization vulnerability with a critical severity due to improper access control configurations.
How do I fix CVE-2024-56295?
To fix CVE-2024-56295, update the Poll Maker plugin or Poll Maker software to version 5.5.7 or later, where the vulnerability is patched.
What versions are affected by CVE-2024-56295?
CVE-2024-56295 affects Poll Maker versions up to and including 5.5.6.
What type of vulnerability is CVE-2024-56295?
CVE-2024-56295 is a missing authorization vulnerability that allows unauthorized access due to incorrectly configured security levels.
Who can be impacted by CVE-2024-56295?
Users of the Poll Maker and the WordPress Poll Maker plugin, especially those running versions prior to 5.5.7, can be impacted by CVE-2024-56295.