PT-2021-3636 · WordPress · Event Banner Wordpress Plugin
Jin Huang
+1
·
Published
2021-05-05
·
Updated
2022-10-25
·
CVE-2021-24252
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Event Banner WordPress plugin versions prior to 1.4
Description
The issue is related to the lack of verification for uploaded image files, allowing admin accounts to upload arbitrary files, such as .exe or .php, leading to remote code execution (RCE). The absence of a CSRF check also makes the issue exploitable via such a vector. Additionally, the lack of authorization checks could potentially allow for local file inclusion (LFI) attacks, although this would require WordPress to be loaded.
Recommendations
For Event Banner WordPress plugin versions prior to 1.4, update to version 1.4 or later to resolve the issue.
As a temporary workaround, consider disabling file upload functionality in the plugin until a patch is available.
Restrict access to the plugin's upload feature to minimize the risk of exploitation.
Exploit
Fix
RCE
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Event Banner Wordpress Plugin