NA

CVE-2023-5254

Published: 19/10/2023 Updated: 07/11/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The ChatBot plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 4.8.9 via the qcld_wb_chatbot_check_user function. This can allow unauthenticated malicious users to extract sensitive data including confirmation as to whether a user name exists on the site as well as order information for existing users.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

quantumcloud ai chatbot