TROYANOSYVIRUS
Voltar para CVEs

CVE-2025-64352

LOW
2.7

Descricao

Missing Authorization vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Addons for Elementor: from n/a through <= 6.2.4.

Detalhes CVE

Pontuacao CVSS v3.12.7
SeveridadeLOW
Vetor CVSSCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Vetor de ataqueNETWORK
ComplexidadeLOW
Privilegios necessariosHIGH
Interacao do usuarioNONE
Publicado10/31/2025
Ultima modificacao4/27/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

wpdeveloper:essential_addons_for_elementor

Fraquezas (CWE)

CWE-862

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.