Intelligence View
CVE-2024-2137 | All-in-One Addons for Elementor Plugin up to 2.4.8 on WordPress Pricing Widget cross site scripting
A vulnerability was found in All-in-One Addons for Elementor Plugin up to 2.4.8 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Pricing Widget. The manipulation leads to…
This vulnerability is handled as CVE-2024-2137. The attack may be launched remotely. There is no exploit available.
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - CVE-2024-2137 | All-in-One Addons for Elementor Plugin up to 2.4.8 on WordPress Pricing Widget cross site scripting
id: 274deff5-c800-420b-8277-07b4c4bf021d
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-24
logsource:
category: network_connection
product: any
detection:
selection:
CommandLine|contains:
- 'exploit'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-24"
description = "YARA Signature for "
strings:
$str = "CVE-2024-2137 | All-in-One Add" ascii wide
condition:
any of them
}
SOCIAL SHARE CARD GENERATOR