Skip to main content

CVE-2023-32243

Description

Improper Authentication vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation. This issue affects Essential Addons for Elementor: from 5.4.0 through 5.7.1.

Patchstack
Severity: CRITICAL
CVE ID: CVE-2023-32243
CVSS Score: 9.8
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Refrence: NVDMITRE

Proof Of Concept

Nuclei Templates for CVE-2023-32243
little44n1o

poc

Refrence: GitHub

gbrsh

Exploit for CVE-2023-32243 - Unauthorized Account Takeover.

Refrence: GitHub

RandomRobbieBF

CVE-2023-32243 - Essential Addons for Elementor 5.4.0-5.7.1 - Unauthenticated Privilege Escalation

Refrence: GitHub

manavvedawala2

Refrence: GitHub

manavvedawala2

Refrence: GitHub

YouGina

Vulnerable docker to test for: CVE-2023-32243

Refrence: GitHub

thatonesecguy

Identifies domains which run WordPress and tests against vulnerabilities (CVE-2023-32243) / #VU76395 / etc...

Refrence: GitHub

manavvedawala

Refrence: GitHub

Jenderal92

Python 2.7

Refrence: GitHub

shaoyu521

Mass-CVE-2023-32243

Refrence: GitHub