CVE Published: 04/06/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: Patchstack |
Vendor: Unlimited Elements |
Product: Unlimited Elements For Elementor (Free Widgets, Addons, Templates) Status : PUBLISHED
CVE-2023-33930 Description
Unrestricted Upload of File with Dangerous Type vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) allows Code Injection.This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through 1.5.66.
Metrics
CVSS Version: 3.1 |
Base Score: 9.1 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H