Incorrect Authorization vulnerability in WPChill Htaccess File Editor Allows Accessing Functionality Not Properly Constrained by ACLs
CVE-2024-49256
What is CVE-2024-49256?
An incorrect authorization vulnerability in the WPChill Htaccess File Editor has been identified, which allows access to functionalities that are not properly constrained by access control lists (ACLs). This flaw enables unauthorized users to potentially manipulate sensitive server configurations, posing a risk to the security and integrity of the affected WordPress installations. The vulnerability affects versions from n/a through 1.0.18, emphasizing the need for administrators to promptly assess their systems and ensure proper access controls are implemented.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Htaccess File Editor <= 1.0.18
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved