6.5

CVE-2021-24721

Exploit

Loco Translate < 2.5.4 - Authenticated PHP Code Injection

Loco Translate <= 2.5.3 - Authenticated PHP Code Injection

The Loco Translate WordPress plugin before 2.5.4 mishandles data inputs which get saved to a file, which can be renamed to an extension ending in .php, resulting in authenticated "translator" users being able to inject PHP code into files ending with .php in web accessible locations.
Mögliche Gegenmaßnahme
Loco Translate: Update to version 2.5.4, or a newer patched version
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Loco Translate ProjectLoco Translate SwPlatformwordpress Version < 2.5.4
Weitere Schwachstelleninformationen
SystemWordPress Plugin
Produkt Loco Translate
Version [*, 2.5.4)
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.91% 0.553
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:P/A:N
CWE-94 Improper Control of Generation of Code ('Code Injection')

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

https://wpscan.com/vulnerability/bc7d4774-fce8-4b0b-8015-8ef4c5b02d38
Third Party Advisory
Exploit
https://www.wordfence.com/threat-intel/vulnerabilities/id/457865ca-cbf8-42ee-928d-2c894d9d62de
Third Party Advisory