CVE-2024-1745
MEDIUMDescription
The Testimonial Slider WordPress plugin before 2.3.7 does not properly ensure that a user has the necessary capabilities to edit certain sensitive Testimonial Slider WordPress plugin before 2.3.7 settings, making it possible for users with at least the Author role to edit them.
Is your site exposed to CVE-2024-1745?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Affected Products
| Vendor | Product |
|---|---|
| radiustheme | testimonial_slider_and_showcase |
References
Frequently Asked Questions
What is CVE-2024-1745? +
How severe is CVE-2024-1745? +
What products are affected by CVE-2024-1745? +
How do I check if I'm vulnerable to CVE-2024-1745? +
Related Vulnerabilities
The Widget for Google Reviews plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, …
The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in …
The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to unauthorized access & modification …
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RadiusTheme The Post Grid the-post-grid.This issue affects The …
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in RadiusTheme ShopBuilder – Elementor …
The The Post Grid – Shortcode, Gutenberg Blocks and Elementor Addon for Post Grid plugin for WordPress is vulnerable to …