Missing Authorization Vulnerability in WP-CRM System
CVE-2024-55991
6.5MEDIUM
What is CVE-2024-55991?
A critical missing authorization vulnerability has been identified in the WP-CRM System, which allows for exploitation of incorrectly configured access control settings. This misconfiguration can lead to unauthorized access to sensitive functionalities within the system. Affected versions include all prior to 3.2.9.1. Organizations using this software should prioritize a comprehensive review of their access control configurations to mitigate the risk of exploitation.
Affected Version(s)
WP-CRM System <= 3.2.9.1