PT-2024-36704 · WordPress · Azzaroco Wp Superbackup

Dave Jong

·

Published

2024-12-31

·

Updated

2024-12-31

·

CVE-2024-56070

CVSS v3.1

7.4

High

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Azzaroco WP SuperBackup versions 2.3.3 and earlier
Description The issue is related to a Missing Authorization vulnerability, allowing the exploitation of incorrectly configured access control security levels. This can lead to unauthorized access control bypass in Azzaroco WP SuperBackup.
Recommendations For Azzaroco WP SuperBackup versions 2.3.3 and earlier, update to a version later than 2.3.3 to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2024-56070

Affected Products

Azzaroco Wp Superbackup