CVE-2023-34013: WordPress Poll Maker Plugin <= 4.6.2 is vulnerable to Server Side Request Forgery (SSRF)
Published Nov 13, 2023
·Updated
Server-Side Request Forgery (SSRF) vulnerability in Poll Maker Team Poll Maker – Best WordPress Poll Plugin.This issue affects Poll Maker – Best WordPress Poll Plugin: from n/a through 4.6.2.
Affected Software
1 affected component
ays-pro Poll Maker Wordpress<=4.6.2
Remediation
Information
Update to 4.6.3 or a higher version.
Event History
Nov 13, 2023
CVE Published
via MITRE·02:28 AM
Data Sourced
via MITRE·02:28 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-34013?
The severity of CVE-2023-34013 is high with a severity value of 7.5.
2
How does CVE-2023-34013 affect the Poll Maker WordPress plugin?
CVE-2023-34013 affects the Poll Maker WordPress plugin version 4.6.2 and earlier.
3
What is Server-Side Request Forgery (SSRF)?
Server-Side Request Forgery (SSRF) is a vulnerability that allows an attacker to make arbitrary requests from the vulnerable server.
4
Is there a patch available for CVE-2023-34013?
Yes, a patch for CVE-2023-34013 is available. You can find more information at the provided reference link.
5
How can I fix CVE-2023-34013 in the Poll Maker WordPress plugin?
To fix CVE-2023-34013, update the Poll Maker WordPress plugin to a version higher than 4.6.2.