CVE-2023-51409: WordPress AI Engine plugin <= 1.9.98 - Unauthenticated Arbitrary File Upload vulnerability
Published Apr 12, 2024
·Updated
Unrestricted Upload of File with Dangerous Type vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot.This issue affects AI Engine: ChatGPT Chatbot: from n/a through 1.9.98.
Affected Software
3 affected components
Jordy Meow AI Engine: ChatGPT Chatbot<=1.9.98
WordPress AI Engine<=1.9.98
Meowapps Ai Engine Wordpress<1.9.99
Remediation
Information
Update to 1.9.99 or a higher version.
Event History
Apr 12, 2024
CVE Published
via MITRE·01:15 PM
Data Sourced
via MITRE·01:15 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-51409?
CVE-2023-51409 has a high severity rating due to the unrestricted upload of dangerous file types.
2
How do I fix CVE-2023-51409?
To fix CVE-2023-51409, update the Jordy Meow AI Engine: ChatGPT Chatbot to version 1.9.99 or later.
3
Which versions of the AI Engine: ChatGPT Chatbot are affected by CVE-2023-51409?
CVE-2023-51409 affects all versions of the AI Engine: ChatGPT Chatbot from n/a up to and including version 1.9.98.
4
What types of vulnerabilities does CVE-2023-51409 represent?
CVE-2023-51409 represents an unrestricted upload of file with dangerous type vulnerability.
5
Is there a known exploit for CVE-2023-51409?
Yes, CVE-2023-51409 can be exploited to upload arbitrary files, posing a significant security risk.