First published: Mon Mar 18 2024(Updated: )
The Error Log Viewer by BestWebSoft WordPress plugin before 1.1.3 is affected by a Directory Listing issue, allowing users to read and download PHP logs without authorization
Credit: contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
BestWebSoft Error Log Viewer | <1.1.3 | |
BestWebSoft Error Log Viewer | <1.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-6821 has been rated as a high severity vulnerability due to unauthorized access to sensitive PHP logs.
To fix CVE-2023-6821, update the Error Log Viewer by BestWebSoft plugin to version 1.1.3 or later.
CVE-2023-6821 exposes PHP error logs, which may contain sensitive information about your site's operations.
CVE-2023-6821 affects users of the Error Log Viewer by BestWebSoft plugin versions prior to 1.1.3.
Yes, CVE-2023-6821 can be exploited remotely, allowing unauthorized users to access the logs.