PT-2021-16095 · WordPress · Bold Page Builder

Dc11

·

Published

2021-08-30

·

Updated

2021-09-02

·

CVE-2021-24579

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Bold Page Builder WordPress plugin versions prior to 3.1.6
Description The issue arises from the bt bb get grid AJAX action passing user input into the unserialize() function without validation or sanitization, potentially leading to a PHP Object Injection. Although the plugin itself may not contain a suitable gadget for full exploitation, the presence of other plugins on the blog could facilitate exploitation, resulting in Remote Code Execution (RCE) in some cases.
Recommendations For versions prior to 3.1.6, update to version 3.1.6 or later to resolve the issue. As a temporary workaround, consider restricting access to the bt bb get grid AJAX action until a patch is applied.

Exploit

Fix

RCE

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-24579

Affected Products

Bold Page Builder