CVE-2022-3805
Jeg Elementor Kit <= 2.5.6 - Unauthenticated Authorization Bypass
Record summary
CVE-2022-3805 has a selected CVSS score of 8.6 (high); EIP currently links 1 Nuclei template.
Description
The Jeg Elementor Kit plugin for WordPress is vulnerable to authorization bypass in various functions used to update the plugin settings in versions up to, and including, 2.5.6. Unauthenticated users can use an easily available nonce, obtained from pages edited by the plugin, to update the MailChimp API key, global styles, 404 page settings, and enabled elements.
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Jan 3, 2023 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 23, 2025 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPressBrowse jegtheme / Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPressDefault status: unaffected | CVE List | Through 2.5.6 | affected |
jeg_elementor_kitBrowse jegtheme / jeg_elementor_kit | VulnCheck | Version data not supplied | |
Nuclei templates
1ProjectDiscoveryHIGHJeg Elementor Kit < 2.5.7 - Unauthenticated Settings UpdateCVSS 8.6
The Jeg Elementor Kit plugin for WordPress is vulnerable to authorization bypass in various functions used to update the plugin settings in versions up to, and including, 2.5.6. Unauthenticated users can use an easily available nonce, obtained from pages edited by the plugin, to update the MailChimp API key, global styles, 404 page settings, and enabled elements.
Impact
Unauthenticated attackers can exploit authorization bypass using easily obtained nonces to update plugin settings including MailChimp API keys, global styles, and 404 page configurations, potentially compromising site integrations and design.
Remediation
Fixed in 2.5.7
Source: ProjectDiscovery