Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer [promolayer-popup-builder] < 1.1.1
unknown
[en] The Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing capability check on the disconnect_promolayer function in all versions up to, and including, 1.1.0. This makes it possible...
- Affected:
- up to 1.1.1
- Fixed in:
- 1.1.1
- Disclosed:
- Jun 20, 2024
CVE-2024-3602 on NVD →
Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer <= 1.1.0 - Missing Authorization
medium
The Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing capability check on the disconnect_promolayer function in all versions up to, and including, 1.1.0. This makes it possible for...
- CVSS:
- 4.3
- Affected:
- up to 1.1.0
- Fixed in:
- 1.1.1
- Disclosed:
- Jun 19, 2024
CVE-2024-3602 on NVD →
Protect your WordPress site
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free
← Back to the vulnerability database