CVE-2023-39157

Improper Control of Generation of Code ('Code Injection') vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements For Elementor: from n/a through 2.6.10.
Configurations

Configuration 1 (hide)

cpe:2.3:a:crocoblock:jetelements:*:*:*:*:*:wordpress:*:*

History

05 Jan 2024, 22:05

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de control inadecuado de generación de código ("inyección de código") en Crocoblock JetElements For Elementor. Este problema afecta a JetElements for Elementor: desde n/a hasta 2.6.10.
CVSS v2 : unknown
v3 : 9.0
v2 : unknown
v3 : 8.8
First Time Crocoblock
Crocoblock jetelements
References () https://patchstack.com/database/vulnerability/jet-elements/wordpress-jetelements-for-elementor-plugin-2-6-10-authenticated-remote-code-execution-rce-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/jet-elements/wordpress-jetelements-for-elementor-plugin-2-6-10-authenticated-remote-code-execution-rce-vulnerability?_s_id=cve - Third Party Advisory
CPE cpe:2.3:a:crocoblock:jetelements:*:*:*:*:*:wordpress:*:*

31 Dec 2023, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-31 10:15

Updated : 2024-01-05 22:05


NVD link : CVE-2023-39157

Mitre link : CVE-2023-39157

CVE.ORG link : CVE-2023-39157


JSON object : View

Products Affected

crocoblock

  • jetelements
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')