← Back to CVE List
CVE-2023-6447
The EventPrime WordPress plugin before 3.3.6 lacks authentication and authorization, allowing unauthenticated visitors to access private and password protected Events by guessing their numeric id/event name.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt