vendor:
Blog Master Pro
by:
8bitsec
8.8
CVSS
HIGH
CSV Injection
78
CWE
Product Name: Blog Master Pro
Affected Version From: 1.0
Affected Version To: 1.0
Patch Exists: YES
Related CWE: CVE-2018-10255
CPE: a:codecanyon:blog_master_pro:1.0
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Kali Linux 2.0, Mac OS 10.13
2018
Blog Master Pro v1.0 – CSV Injection
A user is able to inject a command that will be included in the exported CSV file. To exploit this vulnerability, a user must login with regular user's credentials, add =cmd|'/C calc'!A1 as a comment on any article, log in with admin's credentials, browse to Dashboard > Comments, click on the CSV button to download and open the exported CSV file, and the command will be executed.
Mitigation:
Upgrade to version 1.1 or later.