← Back to CVE List

CVE-2024-0237

Published: 2024-01-16T16:15Z
Last Modified: 2024-11-21T08:46Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The EventON WordPress plugin through 4.5.8, EventON WordPress plugin before 2.2.7 do not have authorisation in some AJAX actions, allowing unauthenticated users to update virtual events settings, such as meeting URL, moderator, access details etc > MITRE Terms of Use apply – see LICENSE‑MITRE.txt