PT-2022-13802 · WordPress · Elementor Website Builder
Ramuel Gall
·
Published
2022-04-17
·
Updated
2023-05-26
·
CVE-2022-1329
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Elementor Website Builder plugin for WordPress versions 3.6.0 through 3.6.2
Description
The Elementor Website Builder plugin for WordPress is vulnerable to unauthorized execution of several AJAX actions due to a missing capability check in the ~/core/app/modules/onboarding/module.php file. This makes it possible for attackers to modify site data and upload malicious files that can be used to obtain remote code execution.
Recommendations
For versions 3.6.0 through 3.6.2, update to a version that includes a fix for the missing capability check in the ~/core/app/modules/onboarding/module.php file. As a temporary workaround, consider restricting access to the AJAX actions until a patch is available.
Exploit
Fix
RCE
Missing Authorization
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Elementor Website Builder