iqonicdesign Vulnerabilities and Affected Products
Vulnerabilities associated with SocialV - Social Network and Community BuddyPress Theme.
Products
Clear product- KiviCare – Clinic & Patient Management System (EHR)10 vulnerabilities
- WPBookit8 vulnerabilities
- Graphina – Charts and Graphs For Elementor3 vulnerabilities
- Streamit3 vulnerabilities
- WPBookit Pro3 vulnerabilities
- SocialV - Social Network and Community BuddyPress Theme1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-13529MEDIUM | SocialV - Social Network and Community BuddyPress Theme <= 2.0.15 - Missing Authorization to Arbitrary File DownloadThe SocialV - Social Network and Community BuddyPress Theme theme for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'socialv_send_download_file' function in all versions up to, and including, 2.0.15. This makes it possible for authenticated attackers, with Subscriber-level access and above, to download arbitrary files from the target system. CWE-862Feb 4, 2025 | CVSS6.5v3.1 | EPSS0.38% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |