6.5 CVE-2020-20634

Exploit
 

Elementor 2.9.5 and below WordPress plugin allows authenticated users to activate its safe mode feature. This can be exploited to disable all security plugins on the blog.
https://nvd.nist.gov/vuln/detail/CVE-2020-20634

Categories

CWE-NVD-noinfo

References


 

CPE

cpe start end
Configuration 1
cpe:2.3:a:elementor:website_builder:*:*:*:*:*:wordpress:*:* <= 2.9.5


REMEDIATION




EXPLOITS


Exploit-db.com

id description date
No known exploits

Other (github, ...)

Url
https://blog.nintechnet.com/wordpress-elementor-plugin-fixed-safe-mode-privilege-escalation-vulnerability/


CAPEC


Common Attack Pattern Enumerations and Classifications

id description severity
No entry


MITRE