CVE-2023-51402: WordPress Ultimate Addons for WPBakery Page Builder Plugin <= 3.19.17 is vulnerable to Cross Site Request Forgery (CSRF)
Published Dec 29, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Brain Storm Force Ultimate Addons for WPBakery Page Builder.This issue affects Ultimate Addons for WPBakery Page Builder: from n/a through 3.19.17.
Affected Software
1 affected component
Brainstormforce Ultimate Addons For Wpbakery Page Builder Wordpress<=3.19.17
Remediation
Information
Update to 3.19.18 or a higher version.
Event History
Dec 29, 2023
CVE Published
via MITRE·12:05 PM
Data Sourced
via MITRE·12:05 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-51402?
CVE-2023-51402 is considered a moderate severity Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2023-51402?
To fix CVE-2023-51402, update the Ultimate Addons for WPBakery Page Builder to version 3.19.18 or later.
3
What software is affected by CVE-2023-51402?
CVE-2023-51402 affects Ultimate Addons for WPBakery Page Builder versions from n/a through 3.19.17.
4
What type of vulnerability is CVE-2023-51402?
CVE-2023-51402 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
Is user authentication affected by CVE-2023-51402?
Yes, CVE-2023-51402 can potentially allow attackers to perform actions on behalf of authenticated users without their consent.