Lucene search

K
cvePatchstackCVE-2023-51402
HistoryDec 29, 2023 - 12:15 p.m.

CVE-2023-51402

2023-12-2912:15:46
CWE-352
Patchstack
web.nvd.nist.gov
23
cve-2023-51402
csrf
vulnerability
ultimate addons
wpbakery page builder

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

8.7

Confidence

High

EPSS

0.001

Percentile

24.1%

Cross-Site Request Forgery (CSRF) vulnerability in Brain Storm Force Ultimate Addons for WPBakery Page Builder.This issue affects Ultimate Addons for WPBakery Page Builder: from n/a through 3.19.17.

Affected configurations

Nvd
Vulners
Node
brainstormforceultimate_addons_for_wpbakery_page_builderRange≀3.19.17wordpress
VendorProductVersionCPE
brainstormforceultimate_addons_for_wpbakery_page_builder*cpe:2.3:a:brainstormforce:ultimate_addons_for_wpbakery_page_builder:*:*:*:*:*:wordpress:*:*

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Ultimate Addons for WPBakery Page Builder",
    "vendor": "Brain Storm Force",
    "versions": [
      {
        "changes": [
          {
            "at": "3.19.18",
            "status": "unaffected"
          }
        ],
        "lessThanOrEqual": "3.19.17",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

8.7

Confidence

High

EPSS

0.001

Percentile

24.1%

Related for CVE-2023-51402