CVE-2024-34761

Vulnerability discovered by executing a planned security audit. Improper Control of Generation of Code ('Code Injection') vulnerability in WPENGINE INC Advanced Custom Fields PRO allows Code Injection.This issue affects Advanced Custom Fields PRO: from n/a before 6.2.10.
Configurations

No configuration.

History

21 Nov 2024, 09:19

Type Values Removed Values Added
References () https://patchstack.com/database/vulnerability/advanced-custom-fields-pro/wordpress-advanced-custom-fields-pro-plugin-6-2-10-contributor-arbitrary-function-execution-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/advanced-custom-fields-pro/wordpress-advanced-custom-fields-pro-plugin-6-2-10-contributor-arbitrary-function-execution-vulnerability?_s_id=cve -
Summary
  • (es) Vulnerabilidad descubierta al ejecutar una auditoría de seguridad planificada. Vulnerabilidad de control inadecuado de generación de código ("inyección de código") en WPENGINE INC Advanced Custom Fields PRO permite la inyección de código. Este problema afecta a Advanced Custom Fields PRO: desde n/a antes de 6.2.10.

10 Jun 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-10 16:15

Updated : 2024-11-21 09:19


NVD link : CVE-2024-34761

Mitre link : CVE-2024-34761

CVE.ORG link : CVE-2024-34761


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')