CVE-2021-38360
The wp-publications WordPress plugin is vulnerable to restrictive local file inclusion via the Q_FILE parameter found in the ~/bibtexbrowser.php file which allows attackers to include local zip files and achieve remote code execution, in versions up to…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.26%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The wp-publications WordPress plugin is vulnerable to restrictive local file inclusion via the Q_FILE parameter found in the ~/bibtexbrowser.php file which allows attackers to include local zip files and achieve remote code execution, in versions up to and including 0.0.
- CVSS 3.1
- 9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 2.26% probability · 82th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22, CWE-829
- Affected
- wp-publications project/wp-publications
- Source
- security@wordfence.com
References
- https://plugins.trac.wordpress.org/browser/wp-publications/trunk/bibtexbrowser.php?rev=1830330#L49Third Party Advisory
- https://www.wordfence.com/vulnerability-advisories/#CVE-2021-38360Third Party Advisory
- https://plugins.trac.wordpress.org/browser/wp-publications/trunk/bibtexbrowser.php?rev=1830330#L49Third Party Advisory
- https://www.wordfence.com/vulnerability-advisories/#CVE-2021-38360Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.