Boletines de Vulnerabilidades

Critical 0-day in The Plus Addons for Elementor Allows Site Takeover


Información sobre el sistema

   
Software afectado Wordpress

Descripción

Today, March 8, 2021, the Wordfence Threat Intelligence team became aware of a critical 0-day in The Plus Addons for Elementor, a premium plugin that we estimate has over 30,000 installations. This vulnerability was reported this morning to WPScan by Seravo, a hosting company. The flaw makes it possible for attackers to create new administrative […]

More info:

https://www.wordfence.com/blog/2021/03/critical-0-day-in-the-plus-addons-for-elementor-allows-site-takeover/

Identificadores estándar

Propiedad Valor
CVE

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2021-03-10

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT