CVE-2024-43140

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in G5Theme Ultimate Bootstrap Elements for Elementor allows PHP Local File Inclusion.This issue affects Ultimate Bootstrap Elements for Elementor: from n/a through 1.4.4.
Configurations

Configuration 1 (hide)

cpe:2.3:a:g5plus:ultimate_bootstrap_elements_for_elementor:*:*:*:*:*:wordpress:*:*

History

29 Aug 2024, 16:04

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 8.8
References () https://patchstack.com/database/vulnerability/ultimate-bootstrap-elements-for-elementor/wordpress-ultimate-bootstrap-elements-for-elementor-plugin-1-4-4-local-file-inclusion-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/ultimate-bootstrap-elements-for-elementor/wordpress-ultimate-bootstrap-elements-for-elementor-plugin-1-4-4-local-file-inclusion-vulnerability?_s_id=cve - Third Party Advisory
Summary
  • (es) La limitación inadecuada de un nombre de ruta a una vulnerabilidad de directorio restringido ("Path Traversal") en G5Theme Ultimate Bootstrap Elements para Elementor permite la inclusión de archivos locales PHP. Este problema afecta a Ultimate Bootstrap Elements para Elementor: desde n/a hasta 1.4.4.
CPE cpe:2.3:a:g5plus:ultimate_bootstrap_elements_for_elementor:*:*:*:*:*:wordpress:*:*
First Time G5plus
G5plus ultimate Bootstrap Elements For Elementor

13 Aug 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-13 12:15

Updated : 2024-08-29 16:04


NVD link : CVE-2024-43140

Mitre link : CVE-2024-43140

CVE.ORG link : CVE-2024-43140


JSON object : View

Products Affected

g5plus

  • ultimate_bootstrap_elements_for_elementor
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')