The Simple Job Board plugin for WordPress is vulnerable to unauthorized access of data| due to insufficient authorization checking on the fetch_quick_job() function in all versions up to, and including, 2.10.8. This makes it possible for unauthenticated attackers to fetch arbitrary posts, which can be password protected or private and contain sensitive information.
History

Fri, 31 Jan 2025 17:00:00 +0000

Type Values Removed Values Added
First Time appeared Presstigers
Presstigers simple Job Board
Weaknesses CWE-862
CPEs cpe:2.3:a:presstigers:simple_job_board:*:*:*:*:*:wordpress:*:*
Vendors & Products Presstigers
Presstigers simple Job Board

cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published:

Updated: 2024-08-01T18:11:35.677Z

Reserved: 2024-01-16T14:03:15.515Z

Link: CVE-2024-0593

cve-icon Vulnrichment

Updated: 2024-08-01T18:11:35.677Z

cve-icon NVD

Status : Analyzed

Published: 2024-02-21T07:15:52.520

Modified: 2025-01-31T16:36:29.673

Link: CVE-2024-0593

cve-icon Redhat

No data.