CVE-2024-10003

Published Oct 22, 2024

Last updated 23 days ago

Overview

Description
The Rover IDX plugin for WordPress is vulnerable to unauthorized access, modification, and loss of data due to a missing capability check on multiple functions in all versions up to, and including, 3.0.0.2903. This makes it possible for authenticated attackers, with subscriber-level access and above, to add, modify, or delete plugin options.
Source
security@wordfence.com
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
6.3
Impact score
3.4
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Severity
MEDIUM

Weaknesses

security@wordfence.com
CWE-862

Social media

Hype score
Not currently trending
  1. 🚨 CVE-2024-10003 (Published: 2024-10-22) - A high-severity vulnerability affects Rover plugin versions prior to the latest update. Users are urged to upgrade to the patched version immediately to mitigate risks. Stay secure! 🔒 More info: https://t.co/X2emRsZvfu #WordPress… http

    @transilienceai

    26 Oct 2024

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. 🚨 CVE-2024-10003 (Published: 2024-10-22) - A high-severity vulnerability affects Rover plugin versions prior to the latest update. Ensure your site is secure by updating to the patched version available here: https://t.co/X2emRsZvfu. Stay safe! #WordPress #Security

    @transilienceai

    26 Oct 2024

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨 CVE-2024-10003 (Published: 2024-10-22) - High severity vulnerability in Rover IDX versions prior to 3.0.0.2903. Ensure your site is secure by updating to the latest version. For more details, check the remediation guide here: https://t.co/jjtTVXfbPH #WordPress #Security

    @transilienceai

    26 Oct 2024

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. 🚨 CVE-2024-10003 (Published: 2024-10-22) - High severity vulnerability in Rover IDX versions prior to 3.0.0.2903. Ensure your site is secure by updating to the latest version. For more details, check the remediation link: https://t.co/jjtTVXfbPH #WordPress #Security

    @transilienceai

    26 Oct 2024

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 🚨 CVE-2024-10003 (Published: 2024-10-22) - A high-severity vulnerability in Rover IDX versions prior to 3.0.0.2903. Ensure your site is secure by updating to the latest version. For more details, check the remediation steps here: https://t.co/jjtTVXfbPH #WordPress #Security

    @transilienceai

    26 Oct 2024

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 🚨 CVE-2024-10003 (Published: 2024-10-22) - High severity vulnerability in Rover IDX. Affects versions prior to 3.0.0.2903. 🛠️ Remediation: Update to the latest version to secure your site. For details, check the link: https://t.co/5doxaZ2rW7 #WordPress #Security

    @transilienceai

    26 Oct 2024

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. 🚨 CVE-2024-10003 (Published: 2024-10-22) - High severity vulnerability in Rover IDX. Affects versions prior to 3.0.0.2903. Ensure your site is secure by updating to the latest version. For details, check the remediation link: https://t.co/5doxaZ2rW7 #WordPress #Security

    @transilienceai

    26 Oct 2024

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. CVE-2024-10003 The Rover IDX plugin for WordPress is vulnerable to unauthorized access, modification, and loss of data due to a missing capability check on multiple functions in all… https://t.co/LaBX3EV1Mj

    @CVEnew

    22 Oct 2024

    92 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations