vendor:
Simple JobBoard
by:
Arcangelo Saracino, Hoa Nguyen - Suncsr Team
7.7
CVSS
HIGH
Authenticated File Read
22
CWE
Product Name: Simple JobBoard
Affected Version From: < 2.9.3
Affected Version To: 2.9.2003
Patch Exists: YES
Related CWE: CVE-2020-35749
CPE: a:wordpress:simple_jobboard
Tags: authenticated,packetstorm,wp,cve2020,lfi,wordpress,wp-plugin,wpscan,cve
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Nuclei References:
https://wpscan.com/vulnerability/eed3bd69-2faf-4bc9-915c-c36211ef9e2d, https://nvd.nist.gov/vuln/detail/CVE-2020-35749, https://docs.google.com/document/d/1TbePkrRGsczepBaJptIdVRvfRrjiC5hjGg_Vxdesw6E/edit?usp=sharing, http://packetstormsecurity.com/files/161050/Simple-JobBoard-Authenticated-File-Read.html
Nuclei Metadata: {'max-request': 2, 'framework': 'wordpress', 'vendor': 'presstigers', 'product': 'simple_board_job'}
Platforms Tested:
2021
Simple JobBoard Authenticated File Read Vulnerability
This module exploits an authenticated directory traversal vulnerability in WordPress plugin 'Simple JobBoard ' < 2.9.3, allowing arbitrary file read with the web server privileges.
Mitigation:
Update to version 2.9.3 or later.