CVE-2024-38770

CRITICAL EXPLOITED

Revmakx Backup and Staging <1.22.20 - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2024-38770 has been observed exploited in the wild (reported by VulnCheck KEV).

Description

Improper Privilege Management vulnerability in Revmakx Backup and Staging by WP Time Capsule allows Privilege Escalation, Authentication Bypass.This issue affects Backup and Staging by WP Time Capsule: from n/a through 1.22.20.

Scores

CVSS v3 9.8
EPSS 0.0053
EPSS Percentile 40.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

VulnCheck KEV 2024-07-13
CWE
CWE-269
Status published
Products (1)
Revmakx/Backup and Staging by WP Time Capsule < 1.22.20
Published Aug 01, 2024
Tracked Since Feb 18, 2026