CVE-2024-34444

WordPress Slider Revolution plugin < 6.7.0 - Unauthenticated Broken Access Control vulnerability

Missing Authorization vulnerability in ThemePunch OHG Slider Revolution.This issue affects Slider Revolution: from n/a before 6.7.0.


We have discovered 1,069,394 live websites that are affected by CVE-2024-34444.

Run a Free Instant Scan




Affected Software

Product  Revslider
Category UI Frameworks
Vulnerable Domains1,069,394 live websites (72% of Revslider install base)
Vulnerable Versions
  • from 0 through 6.7
Vulnerable Versions Count345 versions ( 88% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jun 19, 2024
  • Updated - Aug 2, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)

Website Distribution by Country

Number of websites using CVE-2024-34444
United States265,269 websites



Germany108,142 websites
Italy73,783 websites
France62,523 websites
GB48,684 websites
Spain40,331 websites
Netherlands29,589 websites
Turkey26,963 websites
Poland26,897 websites
Brazil25,718 websites

Website Distribution by TLD

Number of websites using CVE-2024-34444
.com443,336 websites
.de56,790 websites
.it52,413 websites
.org37,248 websites
.co.uk29,878 websites
.nl25,797 websites
.com.br24,755 websites
.fr23,898 websites
.pl20,359 websites
.net19,895 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2024-34444

Top websites that are affected by CVE-2024-34444. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
******.com France*,***
***********.eu Cyprus*,***
************.com Singapore*,***
******************.org United States*,***
************.ie United States*,***
**********.org United States*,***
************.net United States*,***
***********************.com United States*,***
******************.cat Spain*,***
*****************.com United States*,***
See full domain list

FAQ

CVE-2024-34444 is Missing Authorization in Revslider
A total of 1,069,394 websites have been identified as vulnerable to CVE-2024-34444, based on global website indexing conducted by WebTechSurvey.
The Revslider is affected by the CVE-2024-34444 vulnerability.
Revslider versions up to 6.7 are vulnerable to CVE-2024-34444.
CVE-2024-34444 is resolved in version 6.7 of Revslider.