CVE-2024-33651
CVE-2024-33651 is a Cross-Site Request Forgery (CSRF) vulnerability found in the Matthew Fries MF Gig Calendar plugin, affecting versions up to 1.2.1. This CSRF flaw could allow an attacker to trick a user into performing unintended actions on a website where they are authenticated. Although the CVSS score is 0, indicating a low base severity, SOCRadar's Vulnerability Risk Score (SVRS) of 30 suggests a moderate level of risk based on real-world threat intelligence. While not critical (SVRS > 80), this vulnerability still requires attention as it could be exploited. Successful exploitation could result in unauthorized modifications or actions being performed on behalf of a legitimate user. Organizations using MF Gig Calendar should update to a patched version to mitigate this potential security risk. While this specific CVE-2024-33651 may not be causing widespread active attacks, leaving this vulnerability unpatched could expose your systems to potential future exploitation.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.