Descrição
An issue was discovered in the “Ultimate Addons for Elementor” plugin before 1.24.2 for WordPress, as exploited in the wild in May 2020 in conjunction with CVE-2020-13126. Unauthenticated attackers can create users with the Subscriber role even if registration is disabled.
Software
Não informado
Tipo Software
Plugin
CVE
CVE-2020-13125
Tags
Nâo informado
Data de publicação
16/05/2020
Última atualização
08/12/2024
Pontuação em CVSS 3.0
6.5
Médio