nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-0084 CVE-2023-0084
HIGH
Metform Elementor Contact Form Builder <= 3.1.2 - Unauthenticated Stored Cross-Site Scripting
Record summary
CVE-2023-0084 has a selected CVSS score of 7.2 (high); EIP currently links 1 catalogued exploit.
Description
The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via text areas on forms in versions up to, and including, 3.1.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page, which is the submissions page.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 13, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
MetForm – Contact Form, Survey, Quiz, & Custom Form Builder for ElementorBrowse roxnor / MetForm – Contact Form, Survey, Quiz, & Custom Form Builder for ElementorDefault status: unaffected | CVE List | Through 3.1.2 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBMetform Elementor Contact Form Builder v3.1.2 - Unauthenticated Stored Cross-Site Scripting (XSS)ExploitDB exploitby Mohammed ChemouriNot analyzed1 file
References
6plugins.trac.wordpress.org
https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=2845078%40metform&new=2845078%40metform&sfp_email=&sfph_mail= wordpress.org
https://wordpress.org/plugins/metform wordfence.com
https://www.wordfence.com/blog/2023/02/high-severity-xss-vulnerability-in-metform-elementor-contact-form-builder wordfence.com
https://www.wordfence.com/threat-intel/vulnerabilities/id/05f7d9fe-e95f-4ddf-9bce-2aeac3c2e946 wordfence.com
https://www.wordfence.com/threat-intel/vulnerabilities/id/05f7d9fe-e95f-4ddf-9bce-2aeac3c2e946?source=cve