Critical severity9.8NVD Advisory· Published May 23, 2023· Updated Jun 17, 2026
CVE-2023-28413
CVE-2023-28413
Description
Directory traversal vulnerability in Snow Monkey Forms versions v5.0.6 and earlier allows a remote unauthenticated attacker to obtain sensitive information, alter the website, or cause a denial-of-service (DoS) condition.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:snow_monkey_forms_project:snow_monkey_forms:*:*:*:*:*:wordpress:*:*Range: <=5.0.6
- Range: <=v5.0.6
- Monkey Wrench Inc./Snow Monkey Formsv5Range: versions v5.0.6 and earlier
Patches
Vulnerability mechanics
References
2- jvn.jp/en/jp/JVN01093915/nvdThird Party Advisory
- snow-monkey.2inc.org/2023/04/28/snow-monkey-forms-v5-0-7/nvdRelease Notes
News mentions
0No linked articles in our index yet.