5.3
CVSSv3

CVE-2022-2373

Published: 29/08/2022 Updated: 01/09/2022
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The Simply Schedule Appointments WordPress plugin prior to 1.5.7.7 is missing authorisation in a REST endpoint, allowing unauthenticated users to retrieve WordPress users details such as name and email address

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nsqua simply schedule appointments