CVE-2023-2796
EventON < 2.1.2 - Unauthenticated Event Access
Severity Score
5.3
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
2
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Attend
*SSVC
Descriptions
The EventON WordPress plugin before 2.1.2 lacks authentication and authorization in its eventon_ics_download ajax action, allowing unauthenticated visitors to access private and password protected Events by guessing their numeric id.
The EventON plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the eventon_ics_download function in versions up to, and including, 2.1. This makes it possible for unauthenticated attackers to view private or protected events.
WordPress EventON Calendar plugin version 4.4 suffers from an insecure direct object reference vulnerability.
*Credits:
Miguel Santareno, WPScan
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Attend
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2023-05-18 CVE Reserved
- 2023-06-19 CVE Published
- 2023-08-04 First Exploit
- 2024-09-05 EPSS Updated
- 2024-11-12 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-862: Missing Authorization
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/173984/WordPress-EventON-Calendar-4.4-Insecure-Direct-Object-Reference.html |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/51658 | 2023-08-04 | |
https://wpscan.com/vulnerability/e9ef793c-e5a3-4c55-beee-56b0909f7a0d | 2024-11-12 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Myeventon Search vendor "Myeventon" | Eventon Search vendor "Myeventon" for product "Eventon" | < 2.1.2 Search vendor "Myeventon" for product "Eventon" and version " < 2.1.2" | wordpress |
Affected
|