JVNDB-2024-000093 - JVN iPedia - Ǝ㐫΍f[^x[X
ypKChz

[English]

JVNDB-2024-000093

WordPresspvOCAdvanced Custom FieldsɂNXTCgXNveBO̐Ǝ㐫

Tv

WP Engine񋟂WordPresspvOCAdvanced Custom Fields̃tB[hxɂ́ANXTCgXNveBOiCWE-79j̐Ǝ㐫݂܂B

̐Ǝ㐫́AZLeBxp[gi[VbvɊÂL̕IPAɕ񍐂AJPCERT/CCJ҂Ƃ̒s܂B
񍐎ҁFO䕨YZLAfBNV OR

CVSS ɂ[x (CVSS Ƃ?)

CVSS v3 ɂ[x
{l: 5.4 (x) [IPAl]
  • U敪: lbg[N
  • U̕G:
  • UɕKvȓx:
  • p҂̊֗^: v
  • ȇz͈: ύX
  • @ւ̉e(C):
  • Sւ̉e(I):
  • —pւ̉e(A): Ȃ
e󂯂VXe


WP Engine
  • Advanced Custom Fields 6.3.5тȑÕo[W
  • Advanced Custom Fields Pro 6.3.5тȑÕo[W

z肳e

Yi̐ݒŐݒ肳ꂽ'capability'ݒ茠LU҂ɂāAtB[hxɔCӂ̃XNvgۑꂽꍇAYiɃOCĂU҂Ɠƒ[ŨEFuuEUŁÃXNvgs”\܂B
΍

[Abvf[g]
J҂񋟂ƂɁAŐVłփAbvf[gĂB
J҂́A{Ǝ㐫C̃o[W[XĂ܂B
EAdvanced Custom Fields 6.3.6
EAdvanced Custom Fields Pro 6.3.6
x_

WP Engine
CWEɂƎ㐫^Cvꗗ  CWEƂ?

  1. NXTCgXNveBO(CWE-79) [IPA]]
ʐƎ㐫ʎq(CVE)  CVEƂ?

  1. CVE-2024-45429
Ql

  1. JVN : JVN#67963942
XV

  • [2024N0904]
      f