Path Traversal Vulnerability Affects Consulting Elementor Widgets
CVE-2024-37092
8.8HIGH
What is CVE-2024-37092?
A vulnerability exists in the Consulting Elementor Widgets developed by StylemixThemes due to improper limitation of a pathname to a restricted directory. This security issue allows for local file inclusion, which could potentially lead to unauthorized access to sensitive files on the server. This flaw impacts multiple versions of the Consulting Elementor Widgets, specifically ranging from n/a to version 1.3.0, and underscores the need for users to apply necessary patches to safeguard their applications from exploitation.
Affected Version(s)
Consulting Elementor Widgets <= 1.3.0