What the vulnerability does
01Description
Missing Authorization vulnerability in Jewel Theme Master Addons for Elementor.This issue affects Master Addons for Elementor: from n/a through 2.0.5.4.1.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
What the vulnerability does
Missing Authorization vulnerability in Jewel Theme Master Addons for Elementor.This issue affects Master Addons for Elementor: from n/a through 2.0.5.4.1.
Explanation of Vulnerability in Simple Terms
Master Addons for Elementor versions up to 2.0.5.4.1 lack proper authorization checks on certain functions. An unauthenticated attacker can modify site data and disrupt service without needing to log in or interact with a user. Update to a version newer than 2.0.5.4.1 to resolve this issue.
What an attacker can do
Modify site data and cause service disruption without authentication.
Potential impact on your site
Unauthorized changes to site content and potential downtime affecting all visitors.
Conditions required to exploit
Network access only; no login or user interaction required.
Key dates
External resources
Related vulnerabilities