CVE-2023-41848Missing Authorization in Carousel Slider

Severity
5.3MEDIUMNVD
EPSS
0.2%
top 57.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 13

Description

Missing Authorization vulnerability in Majeed Raza Carousel Slider allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Carousel Slider: from n/a through 2.2.2.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages2 packages

CVEListV5majeed_raza/carousel_slidern/a2.2.2

🔴Vulnerability Details

2
GHSA
GHSA-2v26-7fm5-rmj8: Missing Authorization vulnerability in Majeed Raza Carousel Slider allows Exploiting Incorrectly Configured Access Control Security Levels2024-12-13
CVEList
WordPress Carousel Slider plugin <= 2.2.2 - Broken Access Control vulnerability2024-12-13
CVE-2023-41848 — Missing Authorization | cvebase