First published: Thu Apr 18 2024(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Pepro Dev. Group PeproDev CF7 Database.This issue affects PeproDev CF7 Database: from n/a through 1.8.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
PeproDev CF7 Database | <=1.8.0 | |
WordPress PeproDev CF7 Database | <=1.8.0 |
Update to 1.9.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-41864 is classified as a Cross-Site Request Forgery (CSRF) vulnerability which can lead to unauthorized actions being performed on behalf of the user.
To fix CVE-2023-41864, upgrade the PeproDev CF7 Database plugin to the latest version beyond 1.8.0.
CVE-2023-41864 affects all versions of PeproDev CF7 Database from release up to and including 1.8.0.
Yes, a patch is available that resolves the CSRF vulnerability in versions of PeproDev CF7 Database by upgrading to the latest release.
Exploiting CVE-2023-41864 allows attackers to perform unauthorized actions on behalf of the victim without their consent.