CVE-2017-18596: High severity elementor website builder vulnerability
Published Sep 10, 2019
·Updated
The elementor plugin before 1.8.0 for WordPress has incorrect access control for internal functions.
Affected Software
1 affected component
Elementor Elementor Page Builder Wordpress<1.8.0
Event History
Sep 10, 2019
CVE Published
via MITRE·10:55 AM
Data Sourced
via MITRE·10:55 AM
Description
Frequently Asked Questions
1
What is CVE-2017-18596?
CVE-2017-18596 is a vulnerability found in the elementor plugin before 1.8.0 for WordPress that allows incorrect access control for internal functions.
2
What is the severity of CVE-2017-18596?
CVE-2017-18596 has a severity rating of 8.8, which is considered high.
3
How does CVE-2017-18596 affect WordPress users?
CVE-2017-18596 affects WordPress users who have the elementor plugin installed before version 1.8.0, allowing incorrect access control for internal functions.
4
How can I fix CVE-2017-18596?
To fix CVE-2017-18596, users should update the elementor plugin to version 1.8.0 or higher.
5
Where can I find more information about CVE-2017-18596?
More information about CVE-2017-18596 can be found on the WordPress plugin page for elementor and the WPScan Vulnerability Database.