CVE-2024-31275Missing Authorization in Eventprime

Severity
9.8CRITICALNVD
CNA8.2
EPSS
0.5%
top 35.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 9

Description

Missing Authorization vulnerability in Metagauss EventPrime.This issue affects EventPrime: from n/a through 3.3.4.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

CVEListV5metagauss/eventprimen/a3.3.4

🔴Vulnerability Details

2
CVEList
WordPress EventPrime plugin <= 3.3.4 - Booking Price Manipulation vulnerability2024-06-09
GHSA
GHSA-7f6c-vw35-vwgh: Missing Authorization vulnerability in Metagauss EventPrime2024-06-09
CVE-2024-31275 — Missing Authorization in Eventprime | cvebase