Themify Builder WordPress plugin before 7.5.8 does not validate a parameter before redirecting the user to its value, leading to an Open Redirect issue
References
| Link | Resource |
|---|---|
| https://wpscan.com/vulnerability/d130a60c-c36b-4994-9b0e-e52cd7f99387/ | Exploit Third Party Advisory |
| https://wpscan.com/vulnerability/d130a60c-c36b-4994-9b0e-e52cd7f99387/ | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 09:28
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://wpscan.com/vulnerability/d130a60c-c36b-4994-9b0e-e52cd7f99387/ - Exploit, Third Party Advisory |
20 Nov 2024, 15:09
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Themify builder
|
|
| CPE | cpe:2.3:a:themify:builder:*:*:*:*:-:wordpress:*:* |
02 Jul 2024, 14:45
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://wpscan.com/vulnerability/d130a60c-c36b-4994-9b0e-e52cd7f99387/ - Exploit, Third Party Advisory | |
| First Time |
Themify
Themify themify Builder |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
| CWE | CWE-601 | |
| CPE | cpe:2.3:a:themify:themify_builder:*:*:*:*:*:wordpress:*:* |
13 Jun 2024, 18:36
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
13 Jun 2024, 06:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-06-13 06:15
Updated : 2025-03-17 18:15
NVD link : CVE-2024-3032
Mitre link : CVE-2024-3032
CVE.ORG link : CVE-2024-3032
JSON object : View
Products Affected
themify
- builder
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
