WordPress Plugin Vulnerabilities

Event Manager for WooCommerce < 3.5.3 - Unauthenticated Arbitrary Elementor Template Import

Description

The mep_import_ajax_template AJAX action of the plugin, available to both unauthenticated and authenticated users, is lacking any authorisation and CSRF checks. As a result, unauthenticated user can import arbitrary Elementor template to the blog

Proof of Concept

Affects Plugins

Fixed in 3.5.3

Classification

Type
ACCESS CONTROLS
CWE

Miscellaneous

Original Researcher
WPScanTeam
Verified
Yes

Timeline

Publicly Published
2021-11-03 (about 4 years ago)
Added
2021-11-03 (about 4 years ago)
Last Updated
2021-11-03 (about 4 years ago)

Other