Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-41403 | WordPress plugin "Carousel Slider" provided by Sayful Islam contains a cross-site request forgery vulnerability on Hero image selection feature. While logged in to the WordPress site with Carousel Slider plugin enabled, accessing a crafted page may cause a user to alter the contents of the WordPress site. |
Wed, 04 Sep 2024 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Majeedraza
Majeedraza carousel Slider |
|
| Weaknesses | CWE-352 | |
| CPEs | cpe:2.3:a:majeedraza:carousel_slider:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Majeedraza
Majeedraza carousel Slider |
|
| Metrics |
cvssV3_1
|
Tue, 03 Sep 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 02 Sep 2024 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | WordPress plugin "Carousel Slider" provided by Sayful Islam contains a cross-site request forgery vulnerability on Hero image selection feature. While logged in to the WordPress site with Carousel Slider plugin enabled, accessing a crafted page may cause a user to alter the contents of the WordPress site. | |
| References |
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-03-13T19:57:46.459Z
Reserved: 2024-08-26T01:19:17.660Z
Link: CVE-2024-45270
Updated: 2024-09-03T14:27:44.524Z
Status : Modified
Published: 2024-09-02T00:15:11.767
Modified: 2025-03-13T20:15:22.817
Link: CVE-2024-45270
No data.
OpenCVE Enrichment
No data.
EUVD