CVE-2023-23719: WordPress Premmerce Plugin <= 1.3.17 is vulnerable to Cross Site Request Forgery (CSRF)
Published Jul 17, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Premmerce plugin <= 1.3.17 versions.
Affected Software
1 affected component
Premmerce Premmerce Wordpress<=1.3.17
Event History
Jul 17, 2023
CVE Published
via MITRE·10:54 AM
Data Sourced
via MITRE·10:54 AM
DescriptionSeverityWeakness
Data Sourced
11:15 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-23719?
CVE-2023-23719 has a high severity rating due to its potential to allow unauthorized actions via CSRF.
2
How do I fix CVE-2023-23719?
To fix CVE-2023-23719, update the Premmerce plugin to version 1.3.18 or higher.
3
What types of attacks does CVE-2023-23719 facilitate?
CVE-2023-23719 facilitates Cross-Site Request Forgery (CSRF) attacks, which can allow attackers to execute unauthorized actions on behalf of authenticated users.
4
Which versions of the Premmerce plugin are vulnerable to CVE-2023-23719?
Versions of the Premmerce plugin up to and including 1.3.17 are vulnerable to CVE-2023-23719.
5
Who is affected by CVE-2023-23719?
All users of the Premmerce plugin for WordPress running version 1.3.17 or earlier are affected by CVE-2023-23719.