Логотип exploitDog
bind:CVE-2024-0236
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-0236

Количество 2

Количество 2

nvd логотип

CVE-2024-0236

около 2 лет назад

The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX action, allowing unauthenticated users to retrieve the settings of arbitrary virtual events, including any meeting password set (for example for Zoom)

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-7cv2-662c-vm87

около 2 лет назад

The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX action, allowing unauthenticated users to retrieve the settings of arbitrary virtual events, including any meeting password set (for example for Zoom)

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-0236

The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX action, allowing unauthenticated users to retrieve the settings of arbitrary virtual events, including any meeting password set (for example for Zoom)

CVSS3: 5.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-7cv2-662c-vm87

The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX action, allowing unauthenticated users to retrieve the settings of arbitrary virtual events, including any meeting password set (for example for Zoom)

CVSS3: 5.3
0%
Низкий
около 2 лет назад

Уязвимостей на страницу