PT-2018-15398 · WordPress · Jsmol2Wp

Publicado

2018-12-25

·

Atualizado

2019-01-09

·

CVE-2018-20463

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions JSmol2WP plugin version 1.07
Description An issue in the JSmol2WP plugin allows for arbitrary file read via directory traversal. This is achieved by exploiting the query parameter in the jsmol.php query string with ../ directory traversal in php://filter/resource=. The issue can also be used for Server-Side Request Forgery (SSRF).
Recommendations For JSmol2WP plugin version 1.07, consider restricting access to the jsmol.php file until a patch is available. As a temporary workaround, avoid using the query parameter in the jsmol.php query string to minimize the risk of exploitation.

Exploit

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-20463

Produtos afetados

Jsmol2Wp