CVE-2023-40601: WordPress Mortgage Calculator Estatik Plugin <= 2.0.7 is vulnerable to Cross Site Scripting (XSS)
Published Sep 6, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Estatik Estatik Mortgage Calculator plugin <= 2.0.7 versions.
Affected Software
1 affected component
Estatik Estatik Mortgage Calculator Wordpress<=2.0.7
Event History
Sep 6, 2023
CVE Published
via MITRE·08:45 AM
Data Sourced
via MITRE·08:45 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-40601?
CVE-2023-40601 is classified as a high severity vulnerability.
2
How do I fix CVE-2023-40601?
To mitigate CVE-2023-40601, update the Estatik Mortgage Calculator plugin to version 2.0.8 or later.
3
What type of vulnerability is CVE-2023-40601?
CVE-2023-40601 is an unauthenticated reflected cross-site scripting (XSS) vulnerability.
4
Which versions are affected by CVE-2023-40601?
CVE-2023-40601 affects Estatik Mortgage Calculator plugin versions 2.0.7 and earlier.
5
Can CVE-2023-40601 be exploited by attackers?
Yes, attackers can exploit CVE-2023-40601 to inject malicious scripts into web pages.