Critical severity9.9NVD Advisory· Published Apr 22, 2020· Updated Jun 17, 2026
CVE-2020-7055
CVE-2020-7055
Description
An issue was discovered in Elementor 2.7.4. Arbitrary file upload is possible in the Elementor Import Templates function, allowing an attacker to execute code via a crafted ZIP archive.
Affected products
4- Elementor/Elementordescription
- cpe:2.3:a:elementor:elementor_page_builder:*:*:*:*:*:wordpress:*:*Range: <=2.7.4
- Range: <2.7.4
- Range: <2.7.4
Patches
Vulnerability mechanics
References
2- pentest.co.uk/labs/vulnerability-disclosure-cve-2020-7055/nvdExploitThird Party Advisory
- pentest.co.uk/labs/advisory/cve-2020-7055/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.