CVE-2023-41955: WordPress Essential Addons for Elementor plugin <= 5.8.8 - Contributor+ Privilege Escalation vulnerability
Published May 17, 2024
·Updated
Improper Privilege Management vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation.This issue affects Essential Addons for Elementor: from n/a through 5.8.8.
Affected Software
3 affected components
WPDeveloper Essential Addons For Elementor Wordpress<5.8.9
WPDeveloper Essential Addons for Elementor<=5.8.8
WordPress Essential Addons for Elementor<=5.8.8
Remediation
Information
Update to 5.8.9 or a higher version.
Event History
May 17, 2024
CVE Published
via MITRE·06:55 AM
Data Sourced
via MITRE·06:55 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-41955?
CVE-2023-41955 is classified as a moderate severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2023-41955?
To mitigate CVE-2023-41955, update the WPDeveloper Essential Addons for Elementor plugin to version 5.9 or later immediately.
3
Who is affected by CVE-2023-41955?
CVE-2023-41955 affects users of the Essential Addons for Elementor plugin versions up to 5.8.8.
4
What type of vulnerability is CVE-2023-41955?
CVE-2023-41955 is an Improper Privilege Management vulnerability allowing privilege escalation.
5
Can CVE-2023-41955 be exploited remotely?
Yes, CVE-2023-41955 can be exploited remotely by authenticated users with minimal privileges.