vendor:
Email Subscribers & Newsletters
by:
KBA@SOGETI_ESEC
5.3
CVSS
MEDIUM
Unauthenticated File Download
434
CWE
Product Name: Email Subscribers & Newsletters
Affected Version From: 4.2.2
Affected Version To: 4.2.2
Patch Exists: YES
Related CWE: CVE-2019-19985
CPE: 2.3:a:wordpress:email_subscribers_&_newsletters:4.2.2
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: None
2020
WordPress Plugin Email Subscribers & Newsletters 4.2.2 – Unauthenticated File Download
A vulnerability in WordPress Plugin Email Subscribers & Newsletters 4.2.2 allows an unauthenticated attacker to download arbitrary files from the server. This is due to the lack of input validation in the 'es_file_download' function, which allows an attacker to download any file from the server. This vulnerability can be exploited by sending a specially crafted HTTP request to the vulnerable server.
Mitigation:
Update to version 4.2.3 or later to mitigate this vulnerability.