PT-2024-14001 · Unknown · Metform Elementor Contact Form Builder

Revan Arifio

·

Published

2024-12-09

·

Updated

2025-03-01

·

CVE-2023-50903

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Metform Elementor Contact Form Builder versions prior to 3.4.0
Description The issue is related to a Missing Authorization vulnerability in Metform Elementor Contact Form Builder, which allows exploiting incorrectly configured access control security levels.
Recommendations For versions prior to 3.4.0, update to version 3.4.0 or later to resolve the issue.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2023-50903

Affected Products

Metform Elementor Contact Form Builder