Record summary

CVE-2021-24175 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.

Description

The Plus Addons for Elementor Page Builder WordPress plugin before 4.1.7 was being actively exploited to by malicious actors to bypass authentication, allowing unauthenticated users to log in as any user (including admin) by just providing the related username, as well as create accounts with arbitrary roles, such as admin. These issues can be exploited even if registration is disabled, and the Login widget is not active.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Mar 8, 2021 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

Affected products and versions

2
ProductSourceVersion rangeStatus

The Plus Addons for Elementor Page Builder

CVE List4.1.7 to < 4.1.7affected
VulnCheckVersion data not supplied

Nuclei templates

1
ProjectDiscoveryCRITICALThe Plus Addons for Elementor Page Builder < 4.1.7 - Authentication BypassCVSS 9.8

The Plus Addons for Elementor plugin (before version 4.1.7) allowed attackers to bypass authentication, gain admin access, and create accounts with elevated roles, even when registration was disabled and the Login widget was inactive.

Impact

Unauthenticated attackers can bypass authentication, gain administrator access, and create elevated privilege accounts even when registration is disabled, leading to complete WordPress site takeover.

Remediation

Fixed in 4.1.7

WeaknessesCWE-287
Authorspussycat0x
Template tagscvecve2021wordpresswp-themewpscanelementorplus-addonspassivevkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:posimyth:the_plus_addons_for_elementor:*:*:*:*:*:wordpress:*:*
FOFA: body="/wp-content/plugins/the-plus-addons-for-elementor-page-builder/"

Source: ProjectDiscovery

References

4