CVE-2021-25003
WPCargo < 6.9.0 - Unauthenticated RCE
Record summary
CVE-2021-25003 has a selected CVSS score of 9.8 (critical); EIP currently links 1 repository PoC and 1 Nuclei template.
Description
The WPCargo Track & Trace WordPress plugin before 6.9.0 contains a file which could allow unauthenticated attackers to write a PHP file anywhere on the web server, leading to RCE
Exploitation context
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
WPCargo Track & Trace | CVE List | 6.9.0 to < 6.9.0 | affected |
wpcargo_track_\&_traceBrowse wptaskforce / wpcargo_track_\&_trace | VulnCheck | Version data not supplied | |
Proofs of concept
1Repository PoCs
GitHubbiulove0x/CVE-2021-25003Repository PoCby biulove0xStars: 6Not analyzed3 files
Nuclei templates
1ProjectDiscoveryCRITICALWordPress WPCargo Track & Trace <6.9.0 - Remote Code ExecutionCVSS 9.8
WordPress WPCargo Track & Trace plugin before 6.9.0 is susceptible to remote code execution, The plugin contains a file which can allow an attacker to write a PHP file anywhere on the web server, leading to possible remote code execution. This can allow an attacker to execute malware, obtain sensitive information, modify data, and/or gain full control over a compromised system without entering necessary credentials.
Impact
Successful exploitation of this vulnerability could lead to remote code execution, allowing an attacker to execute arbitrary code on the affected system.
Remediation
Update to the latest version of the WPCargo Track & Trace plugin (6.9.0 or higher) to mitigate this vulnerability.
Source: ProjectDiscovery