CVE-2024-8902

NVD Published Date: October 12, 2024 at 10:15 AM
NVD Last Modified: October 15, 2024 at 12:57 PM
Download Patch
Vulnerability ID
CVE-2024-8902
Severity
None
Severity Score
None
Summary
The Elementor Addon Elements plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.13.8 via the render_column function in modules/data-table/widgets/data-table.php. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive private, pending, and draft template data.
Mitigation and Patches
-
Exploits
-
Metasploit Payload
-
Vector
None
CWE ID
CWE-200

Recent Publish

CVE-2024-9894

KB5046056

KB5046057

CVE-2024-9616

CVE-2023-42133

KB5046058

See More ...

See SecOps Solution
in action

Schedule Demo