WP iCal Availability, CVE-2023-46607
- CVE, Research URL
- Home page URL
- Application
- Published on
- -
- Research Description
- The WP iCal Availability plugin for WordPress is vulnerable to unauthorized use of functionality due to a missing capability check on one of its functions in versions up to, and including, 1.0.3. This makes it possible for authenticated attackers, with subscriber-level access and above, to invoke this function. The exact impact of this vulnerability is unknown.
- Affected versions
-
Min -, max 1.0.3.
- Status
-
vulnerable