What the vulnerability does
01Description
The PowerPack Pro for Elementor plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 2.10.17. This is due to the plugin not restricting low privileged users from setting a default role for a registration form. This makes it possible for authenticated attackers, with contributor-level access and above, to create a registration form with administrator set as the default role and then register as an administrator.
Explanation of Vulnerability in Simple Terms
02Summary
PowerPack Pro for Elementor versions up to 2.10.17 contain an improper file permissions vulnerability that allows authenticated users to read, modify, or delete sensitive files on the site. An attacker with low-level access can escalate privileges and compromise the entire WordPress installation. The vulnerability affects file system permissions and requires only network access and a valid user account.
What an attacker can do
03Attacker Capabilities
Read, modify, or delete sensitive files on the site; escalate privileges to administrator level.
Potential impact on your site
04Site Impact
Attackers with basic user accounts can gain full control of your site, steal data, and modify or delete content.
Conditions required to exploit
05Prerequisites
Attacker must have a valid user account with low-level permissions (e.g., subscriber or contributor).
Key dates
06Disclosure timeline
June 8, 2024
CVE published
April 8, 2026
Record updated