CVE-2023-46083

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Jan 2, 2025
CWE ID 862

Summary

CVE-2023-46083 is a Missing Authorization vulnerability affecting the Kali Forms Contact Form builder with drag & drop. The issue arises due to Kali Forms not adequately enforcing access control security levels, making it susceptible to exploitation. This vulnerability allows unauthorized users to manipulate contact forms installed on affected websites, posing a significant risk to data confidentiality and integrity. The affected versions of Kali Forms include those from n/a up to and including 2.3.27. Organizations using this plugin are advised to update to a patched version as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share