CVE-2024-31352

Missing Authorization vulnerability in Email Subscribers & Newsletters.This issue affects Email Subscribers & Newsletters: from n/a through 5.7.13.
Configurations

Configuration 1 (hide)

cpe:2.3:a:icegram:email_subscribers_\&_newsletters:*:*:*:*:*:wordpress:*:*

History

21 Nov 2024, 09:13

Type Values Removed Values Added
References () https://patchstack.com/database/vulnerability/email-subscribers/wordpress-icegram-express-plugin-5-7-13-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory () https://patchstack.com/database/vulnerability/email-subscribers/wordpress-icegram-express-plugin-5-7-13-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : 5.3

25 Sep 2024, 14:37

Type Values Removed Values Added
CPE cpe:2.3:a:icegram:email_subscribers_\&_newsletters:*:*:*:*:*:wordpress:*:*
Summary
  • (es) Vulnerabilidad de falta de autorización en Email Subscribers & Newsletters. Este problema afecta a los suscriptores de correo electrónico y boletines informativos: desde n/a hasta 5.7.13.
First Time Icegram email Subscribers \& Newsletters
Icegram
References () https://patchstack.com/database/vulnerability/email-subscribers/wordpress-icegram-express-plugin-5-7-13-broken-access-control-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/email-subscribers/wordpress-icegram-express-plugin-5-7-13-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : 9.8

09 Jun 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-09 18:15

Updated : 2024-11-21 09:13


NVD link : CVE-2024-31352

Mitre link : CVE-2024-31352

CVE.ORG link : CVE-2024-31352


JSON object : View

Products Affected

icegram

  • email_subscribers_\&_newsletters
CWE
CWE-862

Missing Authorization