CVE-2024-13568

The Fluent Support – Helpdesk & Customer Support Ticket System plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.8.5 via the 'fluent-support' directory. This makes it possible for unauthenticated attackers to extract sensitive data stored insecurely in the /wp-content/uploads/fluent-support directory which can contain file attachments included in support tickets.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wpmanageninja:fluent_support:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2025-03-01 05:15

Updated : 2025-05-26 01:30


NVD link : CVE-2024-13568

Mitre link : CVE-2024-13568

CVE.ORG link : CVE-2024-13568


JSON object : View

Products Affected

wpmanageninja

  • fluent_support
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

NVD-CWE-noinfo