CVE-2024-37462: WordPress Ultimate Bootstrap Elements for Elementor plugin <= 1.4.2 - Local File Inclusion vulnerability
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in G5Theme Ultimate Bootstrap Elements for Elementor allows Path Traversal.This issue affects Ultimate Bootstrap Elements for Elementor: from n/a through 1.4.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37462?
CVE-2024-37462 has been categorized as a moderate severity vulnerability due to the potential for unauthorized file access.
How do I fix CVE-2024-37462?
To fix CVE-2024-37462, update the Ultimate Bootstrap Elements for Elementor plugin to version 1.4.3 or later.
What type of vulnerability is CVE-2024-37462?
CVE-2024-37462 is classified as a Path Traversal vulnerability, which allows access to files outside the intended directory.
Which versions of Ultimate Bootstrap Elements for Elementor are affected by CVE-2024-37462?
CVE-2024-37462 affects all versions from n/a up to 1.4.2 of the Ultimate Bootstrap Elements for Elementor plugin.
What are the potential impacts of CVE-2024-37462?
The potential impacts of CVE-2024-37462 include unauthorized access to sensitive files on the server.