PT-2024-39747 · WordPress · School Management System

Tonn

·

Published

2024-11-23

·

Updated

2024-11-23

·

CVE-2024-9660

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions The School Management System for Wordpress plugin for WordPress versions up to, and including, 91.5.0
Description The issue is related to arbitrary file uploads due to missing file type validation in the mj smgt load documets new() and mj smgt load documets() functions. This allows authenticated attackers with Student-level access and above to upload arbitrary files on the affected site's server, potentially making remote code execution possible.
Recommendations For versions up to, and including, 91.5.0, consider disabling the mj smgt load documets new() and mj smgt load documets() functions as a temporary workaround until a patch is available. Restrict access to these functions to minimize the risk of exploitation.

Fix

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2024-9660

Affected Products

School Management System