Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2024-40803 | Missing Authorization vulnerability in Truepush allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Truepush: from n/a through 1.0.8. | 
Solution
Deactivate and delete. This plugin has been closed as of September 3, 2024 and is not available for download. This closure is temporary, pending a full review.
Workaround
No workaround given by the vendor.
Fri, 08 Nov 2024 22:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Truepush
         Truepush truepush  | 
|
| CPEs | cpe:2.3:a:truepush:truepush:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products | 
        
        Truepush
         Truepush truepush  | 
Mon, 04 Nov 2024 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Fri, 01 Nov 2024 14:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Missing Authorization vulnerability in Truepush allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Truepush: from n/a through 1.0.8. | |
| Title | WordPress Truepush plugin <= 1.0.8 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
  | 
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2024-11-04T18:22:08.541Z
Reserved: 2024-08-18T21:58:06.273Z
Link: CVE-2024-44021
Updated: 2024-11-04T18:22:04.496Z
Status : Analyzed
Published: 2024-11-01T15:15:52.697
Modified: 2024-11-08T21:30:51.710
Link: CVE-2024-44021
No data.
                        OpenCVE Enrichment
                    No data.
 EUVD