CVE-2023-6000

MEDIUM EXPLOITED NUCLEI

Popup Builder < 4.2.3 - Unauthenticated Stored Cross-Site Scripting via Popup Update

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2023-6000 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including RonF98. A Nuclei detection template is also available.

AI-analyzed exploit summary This repository provides a functional proof-of-concept for CVE-2023-6000, a stored XSS vulnerability in the WordPress Popup Builder plugin (<4.2.3). The exploit demonstrates how an attacker can inject malicious JavaScript into a popup, which executes when users interact with it.

Description

The Popup Builder WordPress plugin before 4.2.3 does not prevent simple visitors from updating existing popups, and injecting raw JavaScript in them, which could lead to Stored XSS attacks.

Exploits (1)

nomisec WORKING POC 1 stars
by RonF98 · client-side
https://github.com/RonF98/CVE-2023-6000-POC

This repository provides a functional proof-of-concept for CVE-2023-6000, a stored XSS vulnerability in the WordPress Popup Builder plugin (<4.2.3). The exploit demonstrates how an attacker can inject malicious JavaScript into a popup, which executes when users interact with it.

Classification
Working Poc 95%
Attack Type
Xss
Complexity
Moderate
Reliability
Reliable
Target: WordPress Popup Builder plugin <4.2.3
No auth needed
Prerequisites: Vulnerable version of Popup Builder plugin installed · Access to the target WordPress site
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Nuclei Templates (1)

WordPress Popup Builder <= 4.2.3 - Unauthenticated Stored XSS
MEDIUMVERIFIEDby riteshs4hu
FOFA: body="/wp-content/plugins/popup-builder"

References (2)

Core 2
Core References
Exploit, Third Party Advisory exploit vdb-entry technical-description
https://wpscan.com/vulnerability/cdb3a8bd-4ee0-4ce0-9029-0490273bcfc8
Exploit, Third Party Advisory technical-description
https://wpscan.com/blog/stored-xss-fixed-in-popup-builder-4-2-3/

Scores

CVSS v3 6.1
EPSS 0.0200
EPSS Percentile 78.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

VulnCheck KEV 2024-01-10
CWE
CWE-79
Status published
Products (1)
sygnoos/popup_builder < 4.2.3
Published Jan 01, 2024
Tracked Since Feb 18, 2026