Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Olive Themes Olive One Click Demo Import allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Olive One Click Demo Import: from n/a through 1.1.2.
History

Tue, 13 Aug 2024 14:30:00 +0000

Type Values Removed Values Added
First Time appeared Olivethemes
Olivethemes olive One Click Demo Import
CPEs cpe:2.3:a:olivethemes:olive_one_click_demo_import:*:*:*:*:*:wordpress:*:*
Vendors & Products Olivethemes
Olivethemes olive One Click Demo Import
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 13 Aug 2024 10:45:00 +0000

Type Values Removed Values Added
Description Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Olive Themes Olive One Click Demo Import allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Olive One Click Demo Import: from n/a through 1.1.2.
Title WordPress Olive One Click Demo Import plugin <= 1.1.2 - Sensitive Data Exposure vulnerability
Weaknesses CWE-200
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published: 2024-08-13T10:22:39.537Z

Updated: 2024-08-13T13:13:35.280Z

Reserved: 2024-06-19T11:17:14.714Z

Link: CVE-2024-38749

cve-icon Vulnrichment

Updated: 2024-08-13T13:13:22.915Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-08-13T11:15:16.193

Modified: 2024-08-13T12:58:25.437

Link: CVE-2024-38749

cve-icon Redhat

No data.