CVE-2024-33584
WordPress Video Conferencing with Zoom plugin <= 4.4.4 - Open Redirection vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Deepen Bajracharya Video Conferencing with Zoom.This issue affects Video Conferencing with Zoom: from n/a through 4.4.4.
Vulnerabilidad de redirección de URL a un sitio que no es de confianza ('Open Redirect') en Deepen Bajracharya Video Conferencing with Zoom. Este problema afecta a las videoconferencias con Zoom: desde n/a hasta 4.4.4.
The Video Conferencing with Zoom plugin for WordPress is vulnerable to Open Redirect in all versions up to, and including, 4.4.4. This is due to insufficient validation on a redirect url. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2024-04-24 CVE Reserved
- 2024-04-25 CVE Published
- 2024-04-30 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://patchstack.com/database/vulnerability/video-conferencing-with-zoom-api/wordpress-video-conferencing-with-zoom-plugin-4-4-4-open-redirection-vulnerability?_s_id=cve | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Video Conferencing With Zoom Api Search vendor "Video Conferencing With Zoom Api" | Video Conferencing With Zoom Api Search vendor "Video Conferencing With Zoom Api" for product "Video Conferencing With Zoom Api" | >= 0.0.0 <= 4.4.4 Search vendor "Video Conferencing With Zoom Api" for product "Video Conferencing With Zoom Api" and version " >= 0.0.0 <= 4.4.4" | en |
Affected
|