PT-2024-37705 · WordPress · Add Admin Javascript

Matthew Rollings

+1

·

Published

2024-07-27

·

Updated

2024-07-29

·

CVE-2024-6548

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Add Admin JavaScript plugin for WordPress versions up to and including 2.0
Description The issue allows unauthenticated attackers to retrieve the full path of the web application, which can aid other attacks. However, the information displayed is not useful on its own and requires another vulnerability to be present to cause damage to an affected website.
Recommendations For Add Admin JavaScript plugin for WordPress versions up to and including 2.0, update to a version later than 2.0 to resolve the issue.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2024-6548

Affected Products

Add Admin Javascript