7.2

CVE-2021-39352

Exploit

Catch Themes Demo Import <= 1.7 Admin+ Arbitrary File Upload

Catch Themes Demo Import <= 1.7 - Arbitrary File Upload

The Catch Themes Demo Import WordPress plugin is vulnerable to arbitrary file uploads via the import functionality found in the ~/inc/CatchThemesDemoImport.php file, in versions up to and including 1.7, due to insufficient file type validation. This makes it possible for an attacker with administrative privileges to upload malicious files that can be used to achieve remote code execution.
Mögliche Gegenmaßnahme
Catch Themes Demo Import: Update to version 1.8, or a newer patched version
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CatchpluginsCatch Themes Demo Import SwPlatformwordpress Version <= 1.7
Weitere Schwachstelleninformationen
SystemWordPress Plugin
Produkt Catch Themes Demo Import
Version *-1.7
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 56.65% 0.989
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.2 1.2 5.9
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P
security@wordfence.com 7.2 1.2 5.9
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE-434 Unrestricted Upload of File with Dangerous Type

The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

http://packetstormsecurity.com/files/165207/WordPress-Catch-Themes-Demo-Import-1.6.1-Shell-Upload.html
Third Party Advisory
Exploit
VDB Entry
http://packetstormsecurity.com/files/165463/WordPress-Catch-Themes-Demo-Import-Shell-Upload.html
Third Party Advisory
VDB Entry
https://github.com/BigTiger2020/word-press/blob/main/Catch%20Themes%20Demo%20Import.md
Third Party Advisory
Exploit
https://github.com/Hacker5preme/Exploits/tree/main/Wordpress/CVE-2021-39352
Third Party Advisory
Exploit
https://plugins.trac.wordpress.org/changeset/2617555/catch-themes-demo-import/trunk/inc/CatchThemesDemoImport.php
Patch
Third Party Advisory
https://www.exploit-db.com/exploits/50580
Third Party Advisory
Exploit
VDB Entry
https://www.wordfence.com/vulnerability-advisories/#CVE-2021-39352
Third Party Advisory
https://www.wordfence.com/threat-intel/vulnerabilities/id/007ec879-7241-4dd2-9b81-93e44786bbcb
Third Party Advisory