Security Advisory
CVE-2023-6447
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The EventPrime WordPress plugin before 3.3.6 lacks authentication and authorization, allowing unauthenticated visitors to access private and password protected Events by guessing their numeric id/event name.