CVE-2023-4151
Store Locator WordPress < 1.4.13 - Reflected XSS
Record summary
CVE-2023-4151 has a selected CVSS score of 6.1 (medium); EIP currently links 1 Nuclei template.
Description
The Store Locator WordPress plugin before 1.4.13 does not sanitise and escape an invalid nonce before outputting it back in an AJAX response, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin
Exploitation context
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Mar 6, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Store Locator WordPressDefault status: unaffected | CVE List | Before 1.4.13 | affected |
Nuclei templates
1ProjectDiscoveryMEDIUMStore Locator WordPress < 1.4.13 - Cross-Site ScriptingCVSS 6.1
The Store Locator WordPress plugin before 1.4.13 does not sanitise and escape an invalid nonce before outputting it back in an AJAX response, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
Impact
Attackers can potentially exploit this vulnerability to gain unauthorized access to sensitive information.
Remediation
Update the plugin to Latest version. Fixed in 1.4.13.
Source: ProjectDiscovery