CVE-2024-44030
CVSS 3.1 Score 7.2 of 10 (high)
Details
Summary
CVE-2024-44030 is a newly disclosed Path Traversal vulnerability affecting Mestres do WP Checkout. The flaw, which allows PHP Local File Inclusion, enables attackers to bypass security restrictions and access restricted directories. This issue poses a serious risk, as an attacker can potentially gain unauthorized access to sensitive information or even execute malicious code. The vulnerability affects Mestres WP Checkout versions from n/a through 8.6. It is advised that users of this software update to a secure version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.