8.6
CVE-2026-26212
- EPSS 0.46%
- Veröffentlicht 09.09.2026 14:50:33
- Zuletzt bearbeitet 10.09.2026 15:17:29
- Erkennungen
Rara One Click Demo Import < 1.3.5 Arbitrary File Upload RCE
Rara One Click Demo Import <= 1.3.4 - Authenticated (Admin+) Arbitrary File Upload
Rara One Click Demo Import plugin for WordPress before 1.3.5 contains an arbitrary file upload vulnerability that allows authenticated attackers with Administrator privileges to upload arbitrary PHP files by passing a false value to wp_handle_upload() that disables WordPress core's file type validation checks across all three file parameters in the process_uploaded_files() function. Attackers can upload a malicious PHP file to the uploads directory and execute it over HTTP to achieve remote code execution in the web server process, with the uploaded file persisting on disk even after plugin deactivation and leaving no media library record to evade standard integrity checks.
Mögliche Gegenmaßnahme
Rara One Click Demo Import: Update to version 1.3.5, or a newer patched version
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerRara Themes
≫
Produkt
Rara One Click Demo Import
Default Statusunaffected
Version
0
Version <
1.3.5
Status
affected
VulnDex Vulnerability Enrichment
Weitere Schwachstelleninformationen
SystemWordPress Plugin
≫
Produkt
Rara One Click Demo Import
Version
*-1.3.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.46% | 0.383 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| disclosure@vulncheck.com | 8.6 | 0 | 0 |
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
|
| disclosure@vulncheck.com | 7.2 | 1.2 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-434 Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
https://wordpress.com/plugins/rara-one-click-demo-import
https://www.vulncheck.com/advisories/rara-one-click-demo-import-arbitrary-file-upload-rce
https://www.wordfence.com/threat-intel/vulnerabilities/id/65b6bbe4-1c34-47f3-b637-c79d97383abf