Beveiligingsadvies

CVE-2021-24146

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-03-18 14:57:50
Laatst bijgewerkt 2024-08-03 19:21:18
Toegewezen door WPScan
CVSS-score geen score
Status PUBLISHED

Beschrijving

Lack of authorisation checks in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly restrict access to the export files, allowing unauthenticated users to exports all events data in CSV or XML format for example.