mirror of
https://github.com/0xMarcio/cve.git
synced 2026-02-12 22:53:11 +00:00
22 lines
1.2 KiB
Markdown
22 lines
1.2 KiB
Markdown
### [CVE-2021-24962](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-24962)
|
|

|
|

|
|

|
|
&color=brightgreen)
|
|
|
|
### Description
|
|
|
|
The WordPress File Upload Free and Pro WordPress plugins before 4.16.3 allow users with a role as low as Contributor to perform path traversal via a shortcode argument, which can then be used to upload a PHP code disguised as an image inside the auto-loaded directory of the plugin, resulting in arbitrary code execution.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://plugins.trac.wordpress.org/changeset/2677722
|
|
- https://wpscan.com/vulnerability/7a95b3f2-285e-40e3-aead-41932c207623
|
|
|
|
#### Github
|
|
- https://github.com/20142995/nuclei-templates
|
|
- https://github.com/syedayman/Network-PenTest-Project
|
|
- https://github.com/syedayman/Penetration-Test
|
|
|