CVE Database /
CVE-2023-50890
CVE · High
CVE-2023-50890 — Ultimate Addons for Elementor [ultimate-elementor] < 1.36.21
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2023-50890
|
Ultimate Addons for Elementor [ultimate-elementor] < 1.36.21 |
Improper Privilege Management |
High
8.8
|
< 1.36.21
|
1.36.21 |
2023-12-26 |
—
|
CVE-2023-50890
The Ultimate Addons for Elementor plugin versions before 1.36.21 contain a privilege escalation flaw that could enable an attacker with a low-level account to gain higher privileges on the site. Successfully exploiting this vulnerability could potentially grant an attacker complete control over the website. The issue was identified by Rafie Muhammad and has been resolved in version 1.36.21 and later.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings