CVE-2023-6447

The EventPrime WordPress plugin before 3.3.6 lacks authentication and authorization, allowing unauthenticated visitors to access private and password protected Events by guessing their numeric id/event name.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:metagauss:eventprime:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2024-01-22 20:15

Updated : 2024-01-26 19:43


NVD link : CVE-2023-6447

Mitre link : CVE-2023-6447

CVE.ORG link : CVE-2023-6447


JSON object : View

Products Affected

metagauss

  • eventprime