Security Advisory

CVE-2023-6447

5.3
MEDIUM

Vulnerability Description

The EventPrime WordPress plugin before 3.3.6 lacks authentication and authorization, allowing unauthenticated visitors to access private and password protected Events by guessing their numeric id/event name.
Published Date January 22, 2024
Official Source NIST NVD Advisory