CVE · Medium

CVE-2024-43154 — Advanced Cron Manager – debug & control [advanced-cron-manager] < 2.5.10

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-43154 Advanced Cron Manager – debug & control [advanced-cron-manager] < 2.5.10 Missing Authorization Medium 4.3 < 2.5.10 2.5.10 2024-08-07

CVE-2024-43154

The Advanced Cron Manager – debug & control plugin through version 2.5.9 allows authenticated users with subscriber privileges or higher to access restricted data because the __call function lacks proper permission verification. This vulnerability enables low-privileged attackers to render sensitive information they should not be able to access. The issue was resolved in version 2.5.10.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.