logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-5254

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-5254

Description:
The ChatBot plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 4.8.9 via the qcld_wb_chatbot_check_user function. This can allow unauthenticated attackers to extract sensitive data including confirmation as to whether a user name exists on the site as well as order information for existing users.
Last updated date:
10/25/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
10/25/2023
Reference url to background

https://plugins.trac.wordpress.org/browser/chatbot/trunk/functions.php#L1224

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy