The ApplyOnline WordPress plugin before 2.6.3 does not protect uploaded files during the application process, allowing unauthenticated users to access them and any private information they contain
References
Configurations
No configuration.
History
20 May 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 2.7 |
References | () https://wpscan.com/vulnerability/242dac1f-9a1f-4fde-b8c7-374bd451071d/ - |
16 May 2025, 14:43
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
15 May 2025, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-15 20:15
Updated : 2025-05-20 16:15
NVD link : CVE-2024-10098
Mitre link : CVE-2024-10098
CVE.ORG link : CVE-2024-10098
JSON object : View
Products Affected
No product.
CWE
No CWE.