WordPress MBE eShip plugin <= 2.1.2 - Sensitive Data Exposure vulnerability
Vulnerability Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in MBE Worldwide S.P.A. MBE eShip allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects MBE eShip: from n/a through 2.1.2.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-38742
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Joshua Chan (Patchstack Alliance)
More from MBE Worldwide S.p.A.
View All →Affected Vendor
MBE Worldwide S.p.A.
View all reports →