CVE-2024-43283: WordPress Contest Gallery plugin <= 23.1.2 - Unauthenticated Comment UserID And IP address Disclosure vulnerability
Published Aug 26, 2024
·Updated
Insertion of Sensitive Information Into Sent Data vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery contest-gallery.This issue affects Contest Gallery: from n/a through <= 23.1.2.
Affected Software
2 affected components
WordPress Contest Gallery<=23.1.2
contest-gallery Contest Gallery Wordpress<23.1.3
Remediation
Information
Update to 23.1.3 or a higher version.
Event History
Aug 26, 2024
CVE Published
via MITRE·04:07 PM
Data Sourced
via MITRE·04:07 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-43283?
CVE-2024-43283 has been rated as a moderate severity vulnerability.
2
How do I fix CVE-2024-43283?
To fix CVE-2024-43283, update the Contest Gallery plugin to the latest version beyond 23.1.2.
3
What type of vulnerability is CVE-2024-43283?
CVE-2024-43283 is classified as an Exposure of Sensitive Information to an Unauthorized Actor vulnerability.
4
In which versions of the Contest Gallery is CVE-2024-43283 present?
CVE-2024-43283 affects Contest Gallery versions from n/a through 23.1.2.
5
Who is affected by CVE-2024-43283?
Users of the Contest Gallery plugin on affected versions are at risk of unauthorized information exposure due to CVE-2024-43283.