CVE-2023-28492: WordPress Calendar Event Multi View plugin <= 1.4.10 - Missing Authorization Leading To Feedback Submission vulnerability
Missing Authorization vulnerability in CodePeople CP Multi View Event Calendar allows Functionality Misuse.This issue affects CP Multi View Event Calendar: from n/a through 1.4.10.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-28492?
CVE-2023-28492 is classified as a missing authorization vulnerability that can lead to functionality misuse.
How does CVE-2023-28492 affect users of the CP Multi View Event Calendar?
CVE-2023-28492 allows unauthorized users to misuse functionalities within the CP Multi View Event Calendar plugin.
Which versions of software are affected by CVE-2023-28492?
CVE-2023-28492 affects versions from n/a up to and including 1.4.10 of the CP Multi View Event Calendar.
How do I fix CVE-2023-28492?
To fix CVE-2023-28492, update the CP Multi View Event Calendar to the latest version above 1.4.10 that resolves this vulnerability.
Can CVE-2023-28492 impact WordPress users?
Yes, WordPress users utilizing the Calendar Event Multi View plugin version up to 1.4.10 are also impacted by CVE-2023-28492.