Vulnerability Description
The Events Calendar WordPress plugin before 6.2.8.1 discloses the content of password protected posts to unauthenticated users via a crafted request
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Stellarwp | The Events Calendar | < 6.2.8.1 |
References
- https://wpscan.com/vulnerability/229273e6-e849-447f-a95a-0730969ecdaeExploitThird Party Advisory
- https://wpscan.com/vulnerability/229273e6-e849-447f-a95a-0730969ecdaeExploitThird Party Advisory
FAQ
What is CVE-2023-6203?
CVE-2023-6203 is a vulnerability with a CVSS score of 7.5 (HIGH). The Events Calendar WordPress plugin before 6.2.8.1 discloses the content of password protected posts to unauthenticated users via a crafted request
How severe is CVE-2023-6203?
CVE-2023-6203 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-6203?
Check the references section above for vendor advisories and patch information. Affected products include: Stellarwp The Events Calendar.