CVE-2023-6821: Error Log Viewer < 1.1.3 - Directory Listing to Sensitive Data Exposure
Published Mar 18, 2024
·Updated
The Error Log Viewer by BestWebSoft WordPress plugin before 1.1.3 is affected by a Directory Listing issue, allowing users to read and download PHP logs without authorization
Affected Software
2 affected components
Bestwebsoft Error Log Viewer<1.1.3
Bestwebsoft Error Log Viewer Wordpress<1.1.3
Event History
Mar 18, 2024
CVE Published
via MITRE·07:05 PM
Data Sourced
via MITRE·07:05 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-6821?
CVE-2023-6821 has been rated as a high severity vulnerability due to unauthorized access to sensitive PHP logs.
2
How do I fix CVE-2023-6821?
To fix CVE-2023-6821, update the Error Log Viewer by BestWebSoft plugin to version 1.1.3 or later.
3
What types of logs are exposed in CVE-2023-6821?
CVE-2023-6821 exposes PHP error logs, which may contain sensitive information about your site's operations.
4
Who is affected by CVE-2023-6821?
CVE-2023-6821 affects users of the Error Log Viewer by BestWebSoft plugin versions prior to 1.1.3.
5
Can CVE-2023-6821 be exploited remotely?
Yes, CVE-2023-6821 can be exploited remotely, allowing unauthorized users to access the logs.