CVE-2016-11004: High severity monarch by elegant themes vulnerability
Published Sep 20, 2019
·Updated
The Elegant Themes Monarch plugin before 1.2.7 for WordPress has privilege escalation.
Affected Software
1 affected component
Elegantthemes Monarch Wordpress<1.2.7
Event History
Sep 20, 2019
CVE Published
via MITRE·02:39 PM
Data Sourced
via MITRE·02:39 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-11004?
The severity of CVE-2016-11004 is considered high due to the potential for privilege escalation.
2
How do I fix CVE-2016-11004?
To fix CVE-2016-11004, update the Elegant Themes Monarch plugin to version 1.2.7 or later.
3
What versions are affected by CVE-2016-11004?
CVE-2016-11004 affects versions of the Monarch plugin for WordPress prior to 1.2.7.
4
What are the risks associated with CVE-2016-11004?
The risks associated with CVE-2016-11004 include unauthorized access and modification of user roles.
5
Is CVE-2016-11004 exploitable remotely?
Yes, CVE-2016-11004 can be exploited remotely by attackers to gain elevated privileges.