9.8
CVSSv3

CVE-2023-32243

Published: 12/05/2023 Updated: 23/05/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Improper Authentication vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation. This issue affects Essential Addons for Elementor: from 5.4.0 up to and including 5.7.1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wpdeveloper essential addons for elementor

Github Repositories

ESAIP CTF 2023 🔐 Crypto Name Author Difficulty Solves Points Flag Luigi's ascent Rolix Easy 29 152 ECTF{L3ts_g0_ToUcH_S0me_Cl0uds} Toad's Sauce Rolix Easy 5 493 ECTF{0n3_LIttl3_GoUmB4_4_ThE_TaSt3} Square Mario Ruulian Medium 6 489 ECTF{7c2fc5155efcebd7264625c8f4e4db1aea7d489515368cf1626b3d6dffc01e63} Bowser's Box Mizu & Rolix Medium 2

CVE-2023-32243 - Essential Addons for Elementor 5.4.0-5.7.1 - Unauthenticated Privilege Escalation

CVE-2023-32243 Essential Addons for Elementor 540-571 - Unauthenticated Privilege Escalation Info The plugin does not validate the password reset key, which could allow unauthenticated attackers to reset arbitrary account's password to anything they want, by knowing the related email or username, gaining access to them Python Setup pip install -r requirementstxt

Identifies domains which run WordPress and tests against vulnerabilities (CVE-2023-32243) / #VU76395 / etc...

Wordpress-Vulnerability-Identification-Scripts Identifies domains which run WordPress and tests against vulnerabilities (CVE-2023-32243) / #VU76395 / etc wp_identifierpy ===> Input: File containing list of domains / sub-domains Output: List of domains hosting WordPress application CVE-2023-32243 ===> Input: List of domains hosting WordPress application Ou

CVE-2023-32243 - Essential Addons for Elementor 5.4.0-5.7.1 - Unauthenticated Privilege Escalation

CVE-2023-32243 Essential Addons for Elementor 540-571 - Unauthenticated Privilege Escalation Info The plugin does not validate the password reset key, which could allow unauthenticated attackers to reset arbitrary account's password to anything they want, by knowing the related email or username, gaining access to them Python Setup pip install -r requirementstxt

Mass-CVE-2023-32243

Mass-CVE-2023-32243 Mass-CVE-2023-32243 usage python Mass-CVE-2023-32243py -l Txt List File -p password

Python 2.7

WP-CVE-2023-32243 Python 27 Buy Coffee : Bitcoin $: 31mtLHqhaXXyCMnT2EU73U8fwYwigiEEU1 Perfect Money $: U22270614 Saweria $: saweriaco/Shin403 Trakteer $: trakteerid/shin403 How To Use? Install Python 27 Download Here python filepy

just an ordinary exploit

WP-PrivescExploit Mass check & exploit Essential Addons for Elementor 540-571 - Unauthenticated Privilege Escalation Info The plugin does not validate the password reset key, which could allow unauthenticated attackers to reset arbitrary account's password to anything they want, by knowing the related email or username, gaining access to them For more info abou

Exploit for CVE-2023-32243 - Unauthorized Account Takeover.

CVE-2023-32243 Essential Addons for Elementor - Unauthorized Account Takeover PoC is now publishedIt was created for educational/research purposes only! Use it at your own risk!