CVE-2023-23814: WordPress Calendar Event Multi View plugin <= 1.4.13 - Broken Access Control vulnerability
Missing Authorization vulnerability in codepeople CP Multi View Event Calendar cp-multi-view-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CP Multi View Event Calendar : from n/a through <= 1.4.13.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-23814?
The severity of CVE-2023-23814 is considered significant due to the potential for unauthorized access to sensitive data.
How do I fix CVE-2023-23814?
To fix CVE-2023-23814, update CodePeople CP Multi View Event Calendar to version 1.4.14 or later to address the missing authorization vulnerability.
What systems are affected by CVE-2023-23814?
CVE-2023-23814 affects CodePeople CP Multi View Event Calendar versions up to and including 1.4.13.
What type of vulnerability is CVE-2023-23814?
CVE-2023-23814 is a missing authorization vulnerability that allows exploitation of incorrectly configured access control security levels.
Can CVE-2023-23814 affect user data?
Yes, CVE-2023-23814 can potentially expose user data by allowing unauthorized access if not mitigated.