{"id":3633,"date":"2024-04-25T22:45:09","date_gmt":"2024-04-25T22:45:09","guid":{"rendered":"http:\/\/127.0.0.1\/elementskit-pro-3-6-0-inclusion-local-de-archivos-autenticada-contrinutor-a-traves-de-widgets-de-price-menu-hotspot-y-advanced-toggle\/"},"modified":"2024-04-25T22:45:09","modified_gmt":"2024-04-25T22:45:09","slug":"elementskit-pro-3-6-0-inclusion-local-de-archivos-autenticada-contrinutor-a-traves-de-widgets-de-price-menu-hotspot-y-advanced-toggle","status":"publish","type":"post","link":"http:\/\/127.0.0.1\/elementskit-pro-3-6-0-inclusion-local-de-archivos-autenticada-contrinutor-a-traves-de-widgets-de-price-menu-hotspot-y-advanced-toggle\/","title":{"rendered":"ElementsKit Pro <= 3.6.0 – Inclusi\u00f3n Local de Archivos Autenticada (Contrinutor+) a trav\u00e9s de Widgets de Price Menu, Hotspot y Advanced Toggle"},"content":{"rendered":"
<\/p>\n
El plugin ElementsKit Pro para WordPress es vulnerable a Inclusi\u00f3n Local de Archivos en todas las versiones hasta, e incluyendo, la 3.6.0 a trav\u00e9s de los widgets Price Menu, Hotspot y Advanced Toggle. Esto permite a atacantes autenticados, con niveles de acceso de contribuidor y superiores, incluir y ejecutar archivos arbitrarios en el servidor, permitiendo […]<\/p>\n","protected":false},"author":0,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[1343],"class_list":["post-3633","post","type-post","status-publish","format-standard","hentry","category-uncategorized","tag-cve-2024-3500"],"yoast_head":"\n