CVE-2022-0888
The Ninja Forms - File Uploads Extension WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/includes/ajax/controllers/uploads.php file which can be bypassed making it possible for…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 39.4%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
The Ninja Forms - File Uploads Extension WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/includes/ajax/controllers/uploads.php file which can be bypassed making it possible for unauthenticated attackers to upload malicious files that can be used to obtain remote code execution, in versions up to and including 3.3.0
- CVSS 3.1
- 9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 39.39% probability · 99th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-434
- Affected
- ninjaforms/ninja forms file uploads
- Source
- security@wordfence.com
References
- https://gist.github.com/Xib3rR4dAr/5f0accbbfdee279c68ed144da9cd8607Exploit, Patch, Third Party Advisory
- https://www.wordfence.com/threat-intel/vulnerabilities/id/f00eeaef-f277-481f-9e18-bf1ced0015a0?source=cve
- https://www.wordfence.com/vulnerability-advisories/#CVE-2022-0888Third Party Advisory
- https://gist.github.com/Xib3rR4dAr/5f0accbbfdee279c68ed144da9cd8607Exploit, Patch, Third Party Advisory
- https://www.wordfence.com/threat-intel/vulnerabilities/id/f00eeaef-f277-481f-9e18-bf1ced0015a0?source=cve
- https://www.wordfence.com/vulnerability-advisories/#CVE-2022-0888Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.