PT-2025-6722 · Unknown · Seventhqueen K Elements

Rafie Muhammad

·

Published

2025-02-18

·

Updated

2025-02-22

·

CVE-2024-56000

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SeventhQueen K Elements versions prior to 5.4.0
Description The issue is related to an Incorrect Privilege Assignment vulnerability, which allows Privilege Escalation. This vulnerability potentially affects over 23,000 sites. It has been reported that this issue is being actively exploited.
Recommendations For versions prior to 5.4.0, update to version 5.4.0 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive areas of the application to minimize the risk of exploitation.

Fix

LPE

Incorrect Privilege Assignment

Weakness Enumeration

Related Identifiers

CVE-2024-56000

Affected Products

Seventhqueen K Elements