PT-2022-13802 · WordPress · Elementor Website Builder

Ramuel Gall

·

Published

2022-04-17

·

Updated

2023-05-26

·

CVE-2022-1329

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Elementor Website Builder plugin for WordPress versions 3.6.0 through 3.6.2
Description The Elementor Website Builder plugin for WordPress is vulnerable to unauthorized execution of several AJAX actions due to a missing capability check in the ~/core/app/modules/onboarding/module.php file. This makes it possible for attackers to modify site data and upload malicious files that can be used to obtain remote code execution.
Recommendations For versions 3.6.0 through 3.6.2, update to a version that includes a fix for the missing capability check in the ~/core/app/modules/onboarding/module.php file. As a temporary workaround, consider restricting access to the AJAX actions until a patch is available.

Exploit

Fix

RCE

Missing Authorization

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-1329

Affected Products

Elementor Website Builder