CVE-2024-49271: WordPress Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin <= 1.5.121 - Remote Code Execution (RCE) vulnerability
Deserialization of Untrusted Data vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) unlimited-elements-for-elementor allows Command Injection.This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through <= 1.5.121.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-49271?
CVE-2024-49271 is considered a high severity vulnerability due to its potential for command injection.
How do I fix CVE-2024-49271?
To fix CVE-2024-49271, update Unlimited Elements For Elementor to the latest version beyond 1.5.121.
What impact does CVE-2024-49271 have on my website?
CVE-2024-49271 could allow attackers to execute arbitrary commands on the server, compromising website security.
Which versions are affected by CVE-2024-49271?
Versions of Unlimited Elements For Elementor up to and including 1.5.121 are affected by CVE-2024-49271.
Is CVE-2024-49271 exploitable remotely?
Yes, CVE-2024-49271 is exploitable remotely, allowing attackers to gain control over the affected application.