PT-2022-24182 · Totalsoft · Totalsoft Event Calendar

Nguy Minh

·

Published

2022-09-09

·

Updated

2022-09-14

·

CVE-2022-38067

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Totalsoft Event Calendar – Calendar plugin versions 1.4.6 and earlier
Description The issue concerns an Unauthenticated Event Deletion vulnerability.
Recommendations For versions 1.4.6 and earlier, update to a version later than 1.4.6 to resolve the issue.

Fix

Weakness Enumeration

Related Identifiers

CVE-2022-38067

Affected Products

Totalsoft Event Calendar