The Social Auto Poster plugin for WordPress is vulnerable to unauthorized access, modification, and loss of data due to a missing capability check on multiple functions in all versions up to, and including, 5.3.14. This makes it possible for unauthenticated attackers to add, modify, or delete post meta and plugin options.
Metrics
Affected Vendors & Products
References
History
Tue, 03 Sep 2024 22:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Wpwebinfotech
Wpwebinfotech social Auto Poster |
|
CPEs | cpe:2.3:a:wpwebinfotech:social_auto_poster:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Wpwebinfotech
Wpwebinfotech social Auto Poster |
MITRE
Status: PUBLISHED
Assigner: Wordfence
Published: 2024-07-24T02:33:55.116Z
Updated: 2024-08-01T21:41:04.583Z
Reserved: 2024-07-15T13:00:22.715Z
Link: CVE-2024-6750
Vulnrichment
Updated: 2024-08-01T21:41:04.583Z
NVD
Status : Modified
Published: 2024-07-24T03:15:03.477
Modified: 2024-11-21T09:50:14.623
Link: CVE-2024-6750
Redhat
No data.