CVE-2024-4886

T

he contains an IDOR vulnerability that allows a user to comment on a private post by manipulating the ID included in the request

Configurations

Configuration 1 (hide)

cpe:2.3:a:buddyboss:buddyboss_platform:*:*:*:*:*:wordpress:*:*

History

21 Nov 2024, 09:43

Type Values Removed Values Added
References () https://wpscan.com/vulnerability/76e8591f-120c-4cd7-b9a2-79f8d4d98aa8/ - Exploit, Third Party Advisory () https://wpscan.com/vulnerability/76e8591f-120c-4cd7-b9a2-79f8d4d98aa8/ - Exploit, Third Party Advisory

11 Jun 2024, 17:14

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-05 06:15

Updated : 2025-03-27 21:15


NVD link : CVE-2024-4886

Mitre link : CVE-2024-4886

CVE.ORG link : CVE-2024-4886


JSON object : View

Products Affected
CWE
CWE-639

Authorization Bypass Through User-Controlled Key