Missing Authorization Vulnerability Affects ARForms
CVE-2024-32705
7.1HIGH
What is CVE-2024-32705?
A missing authorization vulnerability exists within the ARForms plugin from ReputeInfoSystems, which potentially allows unauthorized users to activate or deactivate plugins. This flaw exposes a critical security risk, making it essential for users of affected versions, including 6.4 and earlier, to implement strong access controls and monitor user permissions.
Affected Version(s)
ARForms 0 <= 6.4