vendor:
WP Super Cache
by:
m0ze
8.8
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: WP Super Cache
Affected Version From: <= 1.7.1
Affected Version To: None
Patch Exists: YES
Related CWE: None
CPE: a:wordpress:wp_super_cache
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: None
2021
WordPress Plugin WP Super Cache 1.7.1 – Remote Code Execution (Authenticated)
An Authenticated RCE vulnerability was discovered in the WP Super Cache plugin through 1.7.1 for WordPress. RCE due to input validation failure and weak $cache_path check in the WP Super Cache Settings -> Cache Location option. Direct access to the wp-cache-config.php file is not prohibited, so this vulnerability can be exploited for a web shell injection. Another possible attack vector: from XSS to RCE.
Mitigation:
Update to the latest version of the WP Super Cache plugin.