CVE-2020-35948
CRITICALXCloner Backup and Restore 4.2.1-4.2.12 - Arbitrary File Write & RCE via xcloner_restore.php
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-35948. PoCs published by Ron Jost.
AI-analyzed exploit summary This exploit leverages an authenticated file write vulnerability in the XCloner WordPress plugin (versions 4.2.1-4.2.12) to achieve remote code execution by overwriting arbitrary files, such as wp-config.php, via the xcloner_restore.php write_file_action.
Description
An issue was discovered in the XCloner Backup and Restore plugin before 4.2.13 for WordPress. It gave authenticated attackers the ability to modify arbitrary files, including PHP files. Doing so would allow an attacker to achieve remote code execution. The xcloner_restore.php write_file_action could overwrite wp-config.php, for example. Alternatively, an attacker could create an exploit chain to obtain a database dump.
Exploits (1)
This exploit leverages an authenticated file write vulnerability in the XCloner WordPress plugin (versions 4.2.1-4.2.12) to achieve remote code execution by overwriting arbitrary files, such as wp-config.php, via the xcloner_restore.php write_file_action.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H