cleantalk
Vulnerabilities and Security Researches

Raptive Ads, CVE-2024-13364

CVE, Research URL

CVE-2024-13364

Application

Raptive Ads

Published on
Feb 19, 2025
Research Description
The Raptive Ads plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the site_ads_files_reset() and cls_file_reset() functions in all versions up to, and including, 3.6.3. This makes it possible for unauthenticated attackers to reset the ad and cls files.
Affected versions
Min -, max 3.6.3.
Status
vulnerable