PT-2025-3242 · Tips Tricks Hq · Compact Wp Audio Player

Theviper17

·

Published

2025-01-07

·

Updated

2025-01-07

·

CVE-2024-56279

CVSS v3.1

6.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Tips and Tricks HQ Compact WP Audio Player versions 1.9.14 and earlier
Description The issue is a Server-Side Request Forgery (SSRF) vulnerability that allows Server Side Request Forgery. This means an attacker can potentially trick the server into making unauthorized requests.
Recommendations For versions 1.9.14 and earlier, update to a version later than 1.9.14 to resolve the issue. As a temporary workaround, consider restricting access to the Compact WP Audio Player until a patch is available.

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2024-56279

Affected Products

Compact Wp Audio Player