Authentication Bypass Using an Alternate Path or Channel vulnerability in Realty Workstation allows Authentication Bypass.This issue affects Realty Workstation: from n/a through 1.0.45.

Subscriptions

Vendors Products
Realty Workstation Subscribe
Realty Workstation Subscribe
Realtyworkstation Subscribe
Realty Workstation Subscribe

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-44915 Authentication Bypass Using an Alternate Path or Channel vulnerability in Realty Workstation allows Authentication Bypass.This issue affects Realty Workstation: from n/a through 1.0.45.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 14 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00612}

epss

{'score': 0.00616}


Thu, 31 Oct 2024 00:45:00 +0000

Type Values Removed Values Added
First Time appeared Realtyworkstation
Realtyworkstation realty Workstation
Weaknesses CWE-306
CPEs cpe:2.3:a:realtyworkstation:realty_workstation:*:*:*:*:*:wordpress:*:*
Vendors & Products Realtyworkstation
Realtyworkstation realty Workstation

Mon, 28 Oct 2024 13:15:00 +0000

Type Values Removed Values Added
First Time appeared Realty Workstation
Realty Workstation realty Workstation
CPEs cpe:2.3:a:realty_workstation:realty_workstation:*:*:*:*:*:*:*:*
Vendors & Products Realty Workstation
Realty Workstation realty Workstation
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 28 Oct 2024 11:30:00 +0000

Type Values Removed Values Added
Description Authentication Bypass Using an Alternate Path or Channel vulnerability in Realty Workstation allows Authentication Bypass.This issue affects Realty Workstation: from n/a through 1.0.45.
Title WordPress Realty Workstation plugin <= 1.0.45 - Account Takeover vulnerability
Weaknesses CWE-288
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published:

Updated: 2024-10-28T12:30:45.865Z

Reserved: 2024-10-24T07:26:46.796Z

Link: CVE-2024-50489

cve-icon Vulnrichment

Updated: 2024-10-28T12:30:40.319Z

cve-icon NVD

Status : Analyzed

Published: 2024-10-28T12:15:16.757

Modified: 2024-10-31T00:16:07.977

Link: CVE-2024-50489

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses