Vulnerability Bulletins

Vulnerabilities Patched in WP Page Builder


System information

   
Affected software Wordpress

Description

On February 15, 2021, the Wordfence Threat Intelligence team began the responsible disclosure process for several vulnerabilities in WP Page Builder, a plugin installed on over 10,000 sites. These vulnerabilities allowed any logged-in user, including subscribers, to access the page builder’s editor and make changes to existing posts on the site by default. Additionally, any […]

More info:

https://www.wordfence.com/blog/2021/04/vulnerabilities-patched-in-wp-page-builder/

Standar resources

Property Value
CVE CVE-2021-24207 and CVE-2021-24208.

Version history

Version Comments Date
1.0 Advisory issued 2021-04-10
Ministerio de Defensa
CNI
CCN
CCN-CERT