CVE-2023-2877
Formidable Forms < 6.3.1 - Subscriber+ Remote Code Execution
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
The Formidable Forms WordPress plugin before 6.3.1 does not adequately authorize the user or validate the plugin URL in its functionality for installing add-ons. This allows a user with a role as low as Subscriber to install and activate arbitrary plugins of arbitrary versions from the WordPress.org plugin repository onto the site, leading to Remote Code Execution.
The Formidable Forms plugin for WordPress is vulnerable to unauthorized arbitrary plugin installation and activation due to a missing capability check on the screen_page() and can_install_addon_api() functions in versions up to, and including, 6.3. This makes it possible for authenticated attackers, with minimal permissions such as subscribers to retrieve a valid token from the welcome page, and then subsequently install and activate arbitrary plugins onto the site utilizing that key. This can easily be leveraged by attackers to achieve remote code execution as they simply need to install another plugin with a vulnerability or functionality that will aid in further exploitation.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-05-24 CVE Reserved
- 2023-05-31 CVE Published
- 2023-06-28 First Exploit
- 2024-07-03 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-862: Missing Authorization
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://github.com/RandomRobbieBF/CVE-2023-2877 | 2023-06-28 | |
https://wpscan.com/vulnerability/33765da5-c56e-42c1-83dd-fcaad976b402 | 2024-08-02 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Strategy11 Search vendor "Strategy11" | Formidable Forms Search vendor "Strategy11" for product "Formidable Forms" | < 6.3.1 Search vendor "Strategy11" for product "Formidable Forms" and version " < 6.3.1" | wordpress |
Affected
|