PT-2024-18109 · Apache+2 · Apache Http Server+2

Wesley

·

Published

2024-03-26

·

Updated

2024-04-02

·

CVE-2024-1521

CVSS v3.1

6.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Elementor Website Builder Pro plugin for WordPress versions up to, and including, 3.20.1
Description The vulnerability is a Stored Cross-Site Scripting issue that occurs when an SVGZ file is uploaded via the Form widget, due to insufficient input sanitization and output escaping. This allows authenticated attackers with contributor-level access and above to inject arbitrary web scripts in pages, which will execute whenever a user accesses an injected page. The issue is only exploitable on web servers running NGINX and not on those running Apache HTTP Server.
Recommendations For Elementor Website Builder Pro plugin for WordPress versions up to, and including, 3.20.1, update to a version higher than 3.20.1 to resolve the issue. As a temporary workaround, consider disabling the Form widget's SVGZ file upload functionality until a patch is available. Restrict access to the Form widget to minimize the risk of exploitation. Avoid using the Form widget to upload SVGZ files until the issue is resolved.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-1521

Affected Products

Apache Http Server
Elementor Website Builder
Nginx