PT-2023-4919 · WordPress · Media Library Assistant

Montel

+1

·

Publicado

2023-08-30

·

Atualizado

2025-09-29

·

CVE-2023-4634

CVSS v2.0

10

Crítica

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Media Library Assistant plugin for WordPress versions up to, and including, 3.09
Description The issue is related to insufficient controls on file paths being supplied to the mla stream file parameter from the ~/includes/mla-stream-image.php file, where images are processed via Imagick(). This makes it possible for unauthenticated attackers to supply files via FTP that will make directory lists, local file inclusion, and remote code execution possible. The estimated number of potentially affected devices worldwide is around 70,000 WordPress sites.
Recommendations For Media Library Assistant plugin for WordPress versions up to, and including, 3.09, update to version 3.10 or newer as soon as possible to resolve the issue. As a temporary workaround, consider restricting access to the mla stream file parameter and the ~/includes/mla-stream-image.php file to minimize the risk of exploitation. Additionally, avoid using the mla stream file parameter in the affected API endpoint until the issue is resolved.

Exploit

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-05428
CVE-2023-4634

Produtos afetados

Media Library Assistant