CVE-2024-33929Missing Authorization in Directorist

Severity
5.3MEDIUMNVD
EPSS
0.1%
top 77.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 3

Description

Missing Authorization vulnerability in wpWax Directorist.This issue affects Directorist: from n/a through 7.8.6.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages1 packages

CVEListV5wpwax/directoristn/a7.8.6

🔴Vulnerability Details

2
CVEList
WordPress Directorist plugin <= 7.8.6 - Broken Access Control vulnerability2024-05-03
GHSA
GHSA-gwjw-xc44-j6c9: Missing Authorization vulnerability in wpWax Directorist2024-05-03
CVE-2024-33929 — Missing Authorization in Directorist | cvebase