CVE-2023-46205: WordPress Ultimate Addons for WPBakery Page Builder plugin <= 3.19.14 - Local File Inclusion vulnerability
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Brainstorm Force Ultimate Addons for WPBakery Page Builder allows PHP Local File Inclusion.This issue affects Ultimate Addons for WPBakery Page Builder: from n/a through 3.19.14.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-46205?
CVE-2023-46205 has been rated as a critical severity vulnerability due to the potential for PHP Local File Inclusion.
How do I fix CVE-2023-46205?
To remediate CVE-2023-46205, update the Ultimate Addons for WPBakery Page Builder plugin to version 3.19.15 or later.
What type of vulnerability is CVE-2023-46205?
CVE-2023-46205 is categorized as a Path Traversal vulnerability, which allows access to restricted directories.
Which versions are affected by CVE-2023-46205?
CVE-2023-46205 affects versions of Ultimate Addons for WPBakery Page Builder from n/a up to and including 3.19.14.
What could be the impact of CVE-2023-46205 on my site?
The impact of CVE-2023-46205 could allow an attacker to execute malicious PHP code on your server, potentially leading to full site compromise.