CVE-2023-49739: WordPress PowerPack Pro for Elementor plugin <= 2.9.23 - Reflected Cross Site Scripting (XSS) vulnerability
Published Dec 14, 2023
·Updated
Vulnerability in IdeaBox Creations PowerPack Pro for Elementor.This issue affects PowerPack Pro for Elementor: from n/a through 2.9.23.
Affected Software
1 affected component
IdeaBox Powerpack Addons For Elementor Wordpress<2.9.24
Remediation
Information
Update the WordPress PowerPack Pro for Elementor plugin to the latest available version (at least 2.9.24).
Event History
Dec 14, 2023
CVE Published
via MITRE·02:43 PM
Data Sourced
via MITRE·02:43 PM
RemedyDescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2023-49739?
CVE-2023-49739 has been classified as a medium severity vulnerability due to its potential impact on user security.
2
How do I fix CVE-2023-49739?
To mitigate CVE-2023-49739, update the IdeaBox PowerPack Pro for Elementor plugin to version 2.9.24 or higher.
3
What kind of impact does CVE-2023-49739 have?
CVE-2023-49739 allows an attacker to exploit reflected cross-site scripting (XSS) vulnerabilities, potentially leading to unauthorized actions or information disclosure.
4
Which versions of IdeaBox PowerPack Pro for Elementor are affected by CVE-2023-49739?
CVE-2023-49739 affects versions of IdeaBox PowerPack Pro for Elementor prior to 2.9.24.
5
What platforms are impacted by CVE-2023-49739?
CVE-2023-49739 impacts the WordPress platform when using the affected versions of the plugin.