CVE Published: 04/06/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: Patchstack |
Vendor: J.N. Breetvelt a.k.a. OpaJaap |
Product: WP Photo Album Plus Status : PUBLISHED
CVE-2023-49774 Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects WP Photo Album Plus: from n/a through 8.5.02.005.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N