CVE-2024-33541: WordPress Better Elementor Addons plugin <= 1.4.1 - Local File Inclusion vulnerability
Published Jun 4, 2024
·Updated
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in BetterAddons Better Elementor Addons allows PHP Local File Inclusion.This issue affects Better Elementor Addons: from n/a through 1.4.1.
Affected Software
3 affected components
BetterAddons Better Elementor Addons<=1.4.1
WordPress Better Elementor Addons<=1.4.1
Kitforest Better Elementor Addons Wordpress<1.4.2
Remediation
Information
Update to 1.4.2 or a higher version.
Event History
Jun 4, 2024
CVE Published
via MITRE·01:04 PM
Data Sourced
via MITRE·01:04 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-33541?
CVE-2024-33541 has a medium severity rating due to its potential for local file inclusion vulnerabilities.
2
How do I fix CVE-2024-33541?
To fix CVE-2024-33541, update Better Elementor Addons to a version later than 1.4.1.
3
What impact does CVE-2024-33541 have on my website?
CVE-2024-33541 can allow attackers to access sensitive files on the server, compromising the integrity of your website.
4
Who is affected by CVE-2024-33541?
CVE-2024-33541 affects users of Better Elementor Addons versions up to and including 1.4.1.
5
Is CVE-2024-33541 exploitable without authentication?
Yes, CVE-2024-33541 can be exploited by unauthenticated users if proper security measures are not in place.