Missing Authorization vulnerability in WishList Products WishList Member X allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WishList Member X: from n/a through 3.26.6
Metrics
Affected Vendors & Products
References
History
Fri, 01 Nov 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Membershipsoftware
Membershipsoftware wishlist Member X |
|
CPEs | cpe:2.3:a:membershipsoftware:wishlist_member_x:*:*:*:*:*:*:*:* | |
Vendors & Products |
Membershipsoftware
Membershipsoftware wishlist Member X |
|
Metrics |
ssvc
|
Fri, 01 Nov 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Missing Authorization vulnerability in WishList Products WishList Member X allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WishList Member X: from n/a through 3.26.6 | |
Title | WordPress WishList Member X plugin < 3.26.7 - Unautenticated Plugin Settings Change Leading to Stored XSS vulnerability | |
Weaknesses | CWE-862 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Patchstack
Published: 2024-11-01T14:18:37.899Z
Updated: 2024-11-01T17:56:09.090Z
Reserved: 2024-06-03T11:44:54.522Z
Link: CVE-2024-37106
Vulnrichment
Updated: 2024-11-01T17:56:04.585Z
NVD
Status : Awaiting Analysis
Published: 2024-11-01T15:15:18.797
Modified: 2024-11-01T20:24:53.730
Link: CVE-2024-37106
Redhat
No data.