Assigner | Patchstack |
Reserved | 2024-03-29 |
Published | 2024-06-09 |
Updated | 2024-06-10 |
Description
Missing Authorization vulnerability in Bricksforge.This issue affects Bricksforge: from n/a through 2.0.17.
CRITICAL: 9.8 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Problem types
CWE-862 Missing Authorization
Product status
Default status
unaffected
Any version
affected
Credits
Dave Jong (Patchstack) finder
References
https://patchstack.com/database/vulnerability/bricksforge/wordpress-bricksforge-plugin-2-0-17-unauthenticated-arbitrary-wordpress-settings-change-vulnerability?_s_id=cve vdb-entry
cve.org CVE-2024-31244
nvd.nist.gov CVE-2024-31244
Download JSON