CVE-2023-52120: WordPress NEX-Forms – Ultimate Form Builder Plugin <= 8.5.2 is vulnerable to Cross Site Request Forgery (CSRF)
Published Jan 5, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Basix NEX-Forms – Ultimate Form Builder – Contact forms and much more.This issue affects NEX-Forms – Ultimate Form Builder – Contact forms and much more: from n/a through 8.5.2.
Affected Software
1 affected component
Basixonline Nex-forms Wordpress<=8.5.2
Remediation
Information
Update to 8.5.5 or a higher version.
Event History
Jan 5, 2024
CVE Published
via MITRE·09:25 AM
Data Sourced
via MITRE·09:25 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-52120?
CVE-2023-52120 is classified as a Cross-Site Request Forgery (CSRF) vulnerability with potential implications for user security.
2
How do I fix CVE-2023-52120?
To fix CVE-2023-52120, update the NEX-Forms – Ultimate Form Builder plugin to version 8.5.3 or later.
3
What versions are affected by CVE-2023-52120?
CVE-2023-52120 affects NEX-Forms – Ultimate Form Builder versions from n/a through 8.5.2.
4
What type of vulnerability is CVE-2023-52120?
CVE-2023-52120 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
What software is impacted by CVE-2023-52120?
CVE-2023-52120 impacts the Basix NEX-Forms – Ultimate Form Builder plugin for WordPress.