PT-2019-15909 · Nopcommerce · Nopcommerce
Klezvirus
·
Published
2019-12-09
·
Updated
2019-12-11
·
CVE-2019-19684
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
nopCommerce version 4.2.0
Description
The issue allows for privilege escalation through file upload in the Presentation/Nop.Web/Admin/Areas/Controllers/PluginController.cs via Admin/FacebookAuthentication/Configure. This is possible because it is possible to upload a crafted Facebook Auth plugin.
Recommendations
For nopCommerce version 4.2.0, as a temporary workaround, consider disabling the file upload functionality in the PluginController.cs until a patch is available. Restrict access to the Admin/FacebookAuthentication/Configure area to minimize the risk of exploitation. Avoid using the crafted Facebook Auth plugin in the affected API endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nopcommerce