First published: Mon Jan 08 2024(Updated: )
The Debug Log Manager WordPress plugin before 2.3.0 contains a Directory listing vulnerability was discovered, which allows you to download the debug log without authorization and gain access to sensitive data
Credit: contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bowo Debug Log Manager | <2.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-6383 has been classified as a medium severity vulnerability due to the potential exposure of sensitive data.
To fix CVE-2023-6383, update the Debug Log Manager plugin to version 2.3.0 or later.
CVE-2023-6383 allows unauthorized users to download the debug log, which may contain sensitive information such as site configurations and user data.
If you are using a version of the Debug Log Manager plugin prior to 2.3.0, your website is vulnerable to CVE-2023-6383.
The impact of CVE-2023-6383 can include exposure of sensitive information and potential compromise of website security.