Vulnerability Description
During testing of the Master Slider WordPress plugin through 3.9.10, a CSRF vulnerability was found, which allows an unauthorized user to manipulate requests on behalf of the victim and thereby delete all of the sliders inside Master Slider WordPress plugin through 3.9.10.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Averta | Master Slider | < 3.10.0 |
Related Weaknesses (CWE)
References
- https://wpscan.com/vulnerability/5a56e5aa-841d-4be5-84da-4c3b7602f053/ExploitThird Party Advisory
- https://wpscan.com/vulnerability/5a56e5aa-841d-4be5-84da-4c3b7602f053/ExploitThird Party Advisory
FAQ
What is CVE-2024-6490?
CVE-2024-6490 is a vulnerability with a CVSS score of 6.5 (MEDIUM). During testing of the Master Slider WordPress plugin through 3.9.10, a CSRF vulnerability was found, which allows an unauthorized user to manipulate requests on behalf of the victim and thereby delet...
How severe is CVE-2024-6490?
CVE-2024-6490 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-6490?
Check the references section above for vendor advisories and patch information. Affected products include: Averta Master Slider.