CVE-2023-51377: WordPress Everest Forms plugin <= 2.0.3 - Broken Access Control vulnerability
Published Jun 14, 2024
·Updated
Missing Authorization vulnerability in WPEverest Everest Forms.This issue affects Everest Forms: from n/a through 2.0.3.
Affected Software
1 affected component
WPEverest Everest Forms Wordpress<2.0.3.1
Remediation
Information
Update to 2.0.3.1 or a higher version.
Event History
Jun 14, 2024
CVE Published
via MITRE·05:45 AM
Data Sourced
via MITRE·05:45 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·06:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-51377?
CVE-2023-51377 is classified as a medium severity vulnerability due to its missing authorization controls.
2
How do I fix CVE-2023-51377?
To fix CVE-2023-51377, update the Everest Forms plugin to a version greater than 2.0.3.
3
What are the potential impacts of CVE-2023-51377?
The missing authorization vulnerability in CVE-2023-51377 could allow unauthorized users to perform restricted actions within the Everest Forms plugin.
4
Which versions of Everest Forms are affected by CVE-2023-51377?
CVE-2023-51377 affects Everest Forms versions prior to 2.0.3.
5
Is there public information available on CVE-2023-51377?
Yes, detailed information about CVE-2023-51377 can be found in security advisories and vulnerability databases.