Incorrect Authorization vulnerability in WP Chill Htaccess File Editor htaccess-file-editor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Htaccess File Editor: from n/a through <= 1.0.18.
References
Configurations
History
23 Apr 2026, 15:19
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.4 |
01 Apr 2026, 16:18
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| Summary | (en) Incorrect Authorization vulnerability in WP Chill Htaccess File Editor htaccess-file-editor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Htaccess File Editor: from n/a through <= 1.0.18. |
19 Nov 2024, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) Incorrect Authorization vulnerability in WPChill Htaccess File Editor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Htaccess File Editor: from n/a through 1.0.18. |
05 Nov 2024, 21:38
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| First Time |
Wpchill
Wpchill htaccess File Editor |
|
| References | () https://patchstack.com/database/vulnerability/htaccess-file-editor/wordpress-htaccess-file-editor-plugin-1-0-18-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory | |
| CPE | cpe:2.3:a:wpchill:htaccess_file_editor:*:*:*:*:*:wordpress:*:* | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
01 Nov 2024, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-11-01 15:15
Updated : 2026-04-23 15:19
NVD link : CVE-2024-49256
Mitre link : CVE-2024-49256
CVE.ORG link : CVE-2024-49256
JSON object : View
Products Affected
wpchill
- htaccess_file_editor
CWE
CWE-863
Incorrect Authorization
