CVE-2023-3219

CVSS Score of 10 (low)

Details

Published Jul 10, 2023
Updated: Nov 7, 2023
CWE ID 639

Summary

CVE-2023-3219 is a vulnerability that affects the EventON WordPress plugin before version 2.1.2. This vulnerability allows unauthenticated visitors to access any Post content, including unpublished or protected posts, by exploiting the event_id parameter in the eventon_ics_download ajax action. The vulnerability can be remediated by updating the plugin to version 2.1.2 or later. The potential danger posed to an organization is that unauthorized individuals can gain access to sensitive and private information through this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share