Lucene search

K
cve[email protected]CVE-2024-33941
HistoryMay 03, 2024 - 8:15 a.m.

CVE-2024-33941

2024-05-0308:15:08
CWE-862
web.nvd.nist.gov
28
cve-2024-33941
missing authorization
avirtum ipanorama 360
wordpress
virtual tour builder

5.3 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.1%

Missing Authorization vulnerability in Avirtum iPanorama 360 WordPress Virtual Tour Builder.This issue affects iPanorama 360 WordPress Virtual Tour Builder: from n/a through 1.8.1.

Affected configurations

Vulners
Node
avirtumimagelinksRange1.8.1
VendorProductVersionCPE
avirtumimagelinks*cpe:2.3:a:avirtum:imagelinks:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "collectionURL": "https://wordpress.org/plugins",
    "defaultStatus": "unaffected",
    "packageName": "ipanorama-360-virtual-tour-builder-lite",
    "product": "iPanorama 360 WordPress Virtual Tour Builder",
    "vendor": "Avirtum",
    "versions": [
      {
        "changes": [
          {
            "at": "1.8.2",
            "status": "unaffected"
          }
        ],
        "lessThanOrEqual": "1.8.1",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

5.3 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.1%

Related for CVE-2024-33941