PT-2024-33633 · WordPress · Rextheme Wp Vr

Trương Hữu Phúc

·

Published

2024-11-19

·

Updated

2024-11-20

·

CVE-2024-49680

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Rextheme WP VR versions prior to 8.5.6
Description The issue is related to a Missing Authorization vulnerability, which allows exploiting incorrectly configured access control security levels.
Recommendations For Rextheme WP VR versions prior to 8.5.6, update to version 8.5.6 or later to resolve the issue.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2024-49680

Affected Products

Rextheme Wp Vr