CVE-2024-7762

The Simple Job Board WordPress plugin before 2.12.6 does not prevent uploaded files from being listed, allowing unauthenticated users to access and download uploaded resumes
Configurations

No configuration.

History

17 May 2025, 04:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

16 May 2025, 14:42

Type Values Removed Values Added
Summary
  • (es) El complemento Simple Job Board para WordPress anterior a la versión 2.12.6 no impide que se enumeren los archivos cargados, lo que permite que usuarios no autenticados accedan y descarguen los currículums cargados.

15 May 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-15 20:15

Updated : 2025-05-17 04:16


NVD link : CVE-2024-7762

Mitre link : CVE-2024-7762

CVE.ORG link : CVE-2024-7762


JSON object : View

Products Affected

No product.

CWE

No CWE.