CVE Published: 19/08/2024 |
CVE Updated: 19/08/2024 |
CVE Year: 2024 Source: Patchstack |
Vendor: VOID CODERS |
Product: Void Elementor Post Grid Addon for Elementor Page builder Status : PUBLISHED
CVE-2024-43281 Description
Improper Limitation of a Pathname to a Restricted Directory (\'Path Traversal\') vulnerability in VOID CODERS Void Elementor Post Grid Addon for Elementor Page builder allows PHP Local File Inclusion.This issue affects Void Elementor Post Grid Addon for Elementor Page builder: from n/a through 2.3.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N