CVE-2023-51480
Last modified
CVE-2023-51480 is a medium-severity vulnerability rated 5.4/10 on the CVSS scale. Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 Active Products Tables for WooCommerce. Professional products tables for WooCommerce store allows Stored XSS.This issue affects Active Products Tables for WooCommerce. EPSS estimates a 0.31% chance of exploitation in the next 30 days.
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 Active Products Tables for WooCommerce. Professional products tables for WooCommerce store allows Stored XSS.This issue affects Active Products Tables for WooCommerce. Professional products tables for WooCommerce store : from n/a through 1.0.6.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Pluginus | Woot | <= 1.0.6 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-51480?
How severe is CVE-2023-51480?
How do I fix CVE-2023-51480?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-51475Unrestricted Upload of File with Dangerous Type vulnerabilit…9.8
- CVE-2023-51476Improper Privilege Management vulnerability in IOSS WP MLM U…9.8
- CVE-2023-51477Improper Authentication vulnerability in BUDDYBOSS DMCC Budd…9.8
- CVE-2023-51478Improper Authentication vulnerability in Abdul Hakeem Build …9.8
- CVE-2023-51479Improper Privilege Management vulnerability in Abdul Hakeem …8.8
- CVE-2023-5148** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in…8.8
- CVE-2023-51481Improper Privilege Management vulnerability in powerfulwp Lo…9.8
- CVE-2023-51482Improper Authentication vulnerability in EazyPlugins Eazy Pl…9.9
- CVE-2023-51483Improper Privilege Management vulnerability in Glowlogix WP …9.8
- CVE-2023-51484Improper Authentication vulnerability in wp-buy Login as Use…9.8
- CVE-2023-51485Improper Neutralization of Input During Web Page Generation …5.4
- CVE-2023-51486Cross-Site Request Forgery (CSRF) vulnerability in RedNao Wo…8.8
Are you affected by CVE-2023-51480?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
