The Simple Job Board plugin for WordPress is vulnerable to unauthorized access of data| due to insufficient authorization checking on the fetch_quick_job() function in all versions up to, and including, 2.10.8. This makes it possible for unauthenticated attackers to fetch arbitrary posts, which can be password protected or private and contain sensitive information.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-16386 | The Simple Job Board plugin for WordPress is vulnerable to unauthorized access of data| due to insufficient authorization checking on the fetch_quick_job() function in all versions up to, and including, 2.10.8. This makes it possible for unauthenticated attackers to fetch arbitrary posts, which can be password protected or private and contain sensitive information. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 31 Jan 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Presstigers
Presstigers simple Job Board |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:presstigers:simple_job_board:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Presstigers
Presstigers simple Job Board |
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2024-08-01T18:11:35.677Z
Reserved: 2024-01-16T14:03:15.515Z
Link: CVE-2024-0593
Updated: 2024-08-01T18:11:35.677Z
Status : Analyzed
Published: 2024-02-21T07:15:52.520
Modified: 2025-01-31T16:36:29.673
Link: CVE-2024-0593
No data.
OpenCVE Enrichment
No data.
EUVD