CVE-2024-30523
WordPress Paid Memberships Pro – Mailchimp Add On plugin <= 2.3.4 - Sensitive Data Exposure vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Insertion of Sensitive Information into Log File vulnerability in Paid Memberships Pro Paid Memberships Pro – Mailchimp Add On pmpro-mailchimp.This issue affects Paid Memberships Pro – Mailchimp Add On: from n/a through 2.3.4.
Vulnerabilidad de inserción de información confidencial en el archivo de registro en Paid Memberships Pro – Mailchimp Add On de WordPress pmpro-mailchimp. Este problema afecta a Paid Memberships Pro – Mailchimp Add On: desde n/a hasta 2.3.4.
The Paid Memberships Pro – Mailchimp Add On plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.3.4 via log files. This makes it possible for unauthenticated attackers to extract information from log files.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2024-03-27 CVE Reserved
- 2024-03-28 CVE Published
- 2024-04-01 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
- CWE-532: Insertion of Sensitive Information into Log File
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://patchstack.com/database/vulnerability/pmpro-mailchimp/wordpress-paid-memberships-pro-mailchimp-add-on-plugin-2-3-4-sensitive-data-exposure-vulnerability?_s_id=cve | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Pmpro Mailchimp Search vendor "Pmpro Mailchimp" | Pmpro Mailchimp Search vendor "Pmpro Mailchimp" for product "Pmpro Mailchimp" | >= 0.0.0 <= 2.3.4 Search vendor "Pmpro Mailchimp" for product "Pmpro Mailchimp" and version " >= 0.0.0 <= 2.3.4" | en |
Affected
|