Lucene search

K
cvePatchstackCVE-2024-37455
HistoryJul 09, 2024 - 11:15 a.m.

CVE-2024-37455

2024-07-0911:15:15
CWE-269
Patchstack
web.nvd.nist.gov
29
cve-2024-37455
brainstorm force ultimate addons
privilege escalation

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.8

Confidence

High

EPSS

0.001

Percentile

20.0%

Improper Privilege Management vulnerability in Brainstorm Force Ultimate Addons for Elementor allows Privilege Escalation.This issue affects Ultimate Addons for Elementor: from n/a through 1.36.31.

Affected configurations

Nvd
Vulners
Vulnrichment
Node
brainstormforceultimate_addons_for_elementorRange<1.36.32wordpress
VendorProductVersionCPE
brainstormforceultimate_addons_for_elementor*cpe:2.3:a:brainstormforce:ultimate_addons_for_elementor:*:*:*:*:*:wordpress:*:*

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Ultimate Addons for Elementor",
    "vendor": "Brainstorm Force",
    "versions": [
      {
        "changes": [
          {
            "at": "1.36.32",
            "status": "unaffected"
          }
        ],
        "lessThanOrEqual": "1.36.31",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.8

Confidence

High

EPSS

0.001

Percentile

20.0%

Related for CVE-2024-37455