S4E just found an informational finding from web sayfası erişilebilirlik kontrolü
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
CVE

CVE-2024-43283

5.3
CVSSmedium
Exploitable remotely over the internet · no authentication required.
Description

Insertion of Sensitive Information Into Sent Data vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery contest-gallery.This issue affects Contest Gallery: from n/a through <= 23.1.2.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
contest gallery
Updated Sep 18, 2026View on NVD →
S4E scanner

Contest Gallery - Broken Access Control

Contest Gallery from n/a through 23.1.2 contains an exposure of sensitive information to an unauthorized actor caused by insufficient access controls, letting attackers access sensitive data, exploit requires no specific conditions. References: https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/contest-gallery/contest-gallery-2312-unauthenticated-information-exposure https://nvd.nist.gov/vuln/detail/CVE-2024-43283 Remediation: Update to the latest version 23.1.2 or later to address the issue.

Used 2.8k times · 1 assets checked · domain, subdomain, ipv4

CVE history: contest gallery

Predict next CVE date with AI

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →