Home
MEDIUM: 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:NDefault status
unaffected
Any version
affected
Description
Missing Authorization vulnerability in WP Chill RSVP and Event Management allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects RSVP and Event Management: from n/a through 2.7.16.
Problem types
Product status
Any version
Credits
daroo | Patchstack Bug Bounty Program
References
patchstack.com/...ken-access-control-vulnerability?_s_id=cve