What the vulnerability does
01Description
Missing Authorization vulnerability in moveaddons Move Addons for Elementor.This issue affects Move Addons for Elementor: from n/a through 1.2.9.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
What the vulnerability does
Missing Authorization vulnerability in moveaddons Move Addons for Elementor.This issue affects Move Addons for Elementor: from n/a through 1.2.9.
Explanation of Vulnerability in Simple Terms
Move Addons for Elementor versions up to 1.2.9 lack proper authorization checks, allowing unauthenticated attackers to access sensitive information. The vulnerability requires no user interaction and can be exploited over the network. Site administrators should update to a version newer than 1.2.9 to mitigate exposure of confidential data.
What an attacker can do
Read sensitive information without logging in.
Potential impact on your site
Confidential data may be exposed to anyone on the internet without needing a site account.
Conditions required to exploit
Network access only; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities