cbcvebase.
CVE-2024-34826
published 2024-06-11

CVE-2024-34826: Missing Authorization vulnerability in Saleswonder Team: Tobias CF7 WOW Styler cf7-styler.This issue affects CF7 WOW Styler: from n/a through <= 1.6.4.

PriorityP279medium6.3CVSS 3.1
AVNACLPRLUINSUCLILAL
ITWVulnCheck KEV
Exploited in the wild
EPSS
0.33%
24.4th percentile
Missing Authorization vulnerability in Saleswonder Team: Tobias CF7 WOW Styler cf7-styler.This issue affects CF7 WOW Styler: from n/a through <= 1.6.4.

Affected

4 ranges
VendorProductVersion rangeFixed in
rackrack>= 0 < 2.2.232.2.23
rackrack>= 3.0.0.beta1 < 3.1.213.1.21
rackrack>= 3.2.0 < 3.2.63.2.6
saleswonder_team_tobiascf7_wow_styler<= 1.6.4

CVSS provenance

nvdv3.16.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
ghsa7.5HIGH
vendor_redhat5.8MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.