CVE-2023-6444
MEDIUM 5.3EPSS 2.5%
The Seriously Simple Podcasting WordPress plugin before 3.0.0 discloses the Podcast owner's email address (which by default is the admin email address) via an unauthenticated crafted request.
- CVSS v3.1
- 5.3 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N - EPSS
- 2.46% chance of exploitation in the next 30 days, 83th percentile
- Nuclei
- medium
- Published
- 2024-03-11
- Updated
- 2024-08-05
Proof-of-concept exploits (2)
- https://wpscan.com/vulnerability/061c59d6-f4a0-4cd1-b945-5e92b9c2b4aa/
- Wayne-Ker/CVE-2023-6444-POC0★ · 2024-08-07