Overview
- Description
- The Woo Manage Fraud Orders plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 6.1.7 through publicly exposed log files. This makes it possible for unauthenticated attackers to view potentially sensitive information about users contained in the exposed log files.
- Source
- security@wordfence.com
- NVD status
- Awaiting Analysis
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 5.3
- Impact score
- 1.4
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
- Severity
- MEDIUM
Weaknesses
- security@wordfence.com
- CWE-532
Social media
- Hype score
- Not currently trending
🚨 CVE-2024-10544 (Published: 2024-10-31) - A high-severity vulnerability affects Wordfence. Ensure your WordPress site is updated to the latest version to mitigate risks. For detailed remediation steps, check out the full report: https://t.co/I3cZtE65vT #CyberSecurity #WordPress
@transilienceai
4 Nov 2024
6 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2024-10544 The Woo Manage Fraud Orders plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 6.1.7 through publicly exposed log files. This makes it possibl... https://t.co/aDNEH7q5fd
@VulmonFeeds
31 Oct 2024
6 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2024-10544 The Woo Manage Fraud Orders plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 6.1.7 through publicly exposed … https://t.co/ne9koz873C
@CVEnew
31 Oct 2024
490 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes