{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2023-2796/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2023-2796/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2023-2796/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2023-2796/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2023-2796/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2023-2796"},"sightings":{"href":"/api/v1/sightings/cve-2023-2796"}},"enrichments":{"cisa-kev":{"kev":false},"epss":{"epss":0.42674,"kev":false,"percentile":0.98665},"nuclei":{"nuclei":true,"nuclei_template":"http/cves/2023/CVE-2023-2796.yaml","nuclei_template_severity":"medium","nuclei_template_yaml":"id: CVE-2023-2796\n\ninfo:\n  name: EventON <= 2.1 - Missing Authorization\n  author: randomrobbie\n  severity: medium\n  description: |\n    The EventON WordPress plugin before 2.1.2 lacks authentication and authorization in its eventon_ics_download ajax action, allowing unauthenticated visitors to access private and password protected Events by guessing their numeric id.\n  impact: |\n    Unauthenticated users can perform privileged actions, potentially leading to unauthorized access or modification of events.\n  remediation: Fixed in version 2.1.2\n  reference:\n    - https://www.wordfence.com/threat-intel/vulnerabilities/id/dba3f3a6-3f55-4f4e-98e4-bb98d9c94bdd\n    - https://wpscan.com/vulnerability/e9ef793c-e5a3-4c55-beee-56b0909f7a0d\n    - https://nvd.nist.gov/vuln/detail/CVE-2023-2796\n    - http://packetstormsecurity.com/files/173984/WordPress-EventON-Calendar-4.4-Insecure-Direct-Object-Reference.html\n    - https://github.com/nullfuzz-pentest/shodan-dorks\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N\n    cvss-score: 5.3\n    cve-id: CVE-2023-2796\n    cwe-id: CWE-862\n    epss-score: 0.42674\n    epss-percentile: 0.98665\n    cpe: cpe:2.3:a:myeventon:eventon:*:*:*:*:*:wordpress:*:*\n  metadata:\n    verified: true\n    max-request: 1\n    vendor: myeventon\n    product: eventon\n    framework: wordpress\n    shodan-query:\n      - 'vuln:CVE-2023-2796'\n      - http.html:/wp-content/plugins/eventon-lite/\n      - http.html:/wp-content/plugins/eventon/\n    fofa-query:\n      - \"wp-content/plugins/eventon/\"\n      - body=/wp-content/plugins/eventon/\n      - body=/wp-content/plugins/eventon-lite/\n    publicwww-query:\n      - /wp-content/plugins/eventon/\n      - /wp-content/plugins/eventon-lite/\n    google-query: inurl:\"/wp-content/plugins/eventon/\"\n  tags: cve2023,cve,wpscan,packetstorm,wordpress,wp-plugin,wp,eventon,bypass,myeventon,vkev,vuln\n\nhttp:\n  - method: GET\n    path:\n      - \"{{BaseURL}}/wp-admin/admin-ajax.php?action=eventon_ics_download&event_id=1\"\n\n    matchers-condition: and\n    matchers:\n      - type: word\n        part: body\n        words:\n          - \"BEGIN:VCALENDAR\"\n          - \"END:VCALENDAR\"\n        condition: and\n\n      - type: word\n        part: header\n        words:\n          - \"text/Calendar\"\n\n      - type: status\n        status:\n          - 200\n# digest: 4a0a00473045022025d29022efa14b20afd3632a721b082a4ff7ea717176276cca462ede04cfba39022100f187eaea29761d3cae837fb39c60dcf6b2f0e69a1f4d59d2fd4490729222b542:922c64590222798bb761d5b6d8e72950"}},"vuln_id":"cve-2023-2796"}