CVE-2023-7231

HIGH

WordPress plugin <1.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

The illi Link Party! WordPress plugin through 1.0 lacks proper access controls, allowing unauthenticated visitors to delete links.

Exploits (1)

nomisec WORKING POC 1 stars
by BBO513 · poc
https://github.com/BBO513/CVE-2023-7231

References (1)

Core 1
Core References
Exploit, Third Party Advisory exploit vdb-entry technical-description
https://wpscan.com/vulnerability/797692ce-f355-4d4a-af01-4bd9abc60a34/

Scores

CVSS v3 7.3
EPSS 0.0030
EPSS Percentile 53.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

Status published
Products (1)
evanliewer/illi_link_party\! < 1.0
Published May 15, 2025
Tracked Since Feb 18, 2026