CVE-2021-29447

HIGH LAB

Wordpress < 5.7.1 - XXE

Title source: rule

Description

Wordpress is an open source CMS. A user with the ability to upload files (like an Author) can exploit an XML parsing issue in the Media Library leading to XXE attacks. This requires WordPress installation to be using PHP 8. Access to internal files is possible in a successful XXE attack. This has been patched in WordPress version 5.7.1, along with the older affected versions via a minor release. We strongly recommend you keep auto-updates enabled.

Exploits (24)

exploitdb WORKING POC
by David Utón · bashwebappsphp
https://www.exploit-db.com/exploits/50304
nomisec WORKING POC 43 stars
by motikan2010 · poc
https://github.com/motikan2010/CVE-2021-29447
nomisec WORKING POC 7 stars
by mega8bit · poc
https://github.com/mega8bit/exploit_cve-2021-29447
nomisec WORKING POC 6 stars
by 0xRar · poc
https://github.com/0xRar/CVE-2021-29447-PoC
nomisec WORKING POC 4 stars
by M3l0nPan · poc
https://github.com/M3l0nPan/wordpress-cve-2021-29447
nomisec STUB 4 stars
by Vulnmachines · poc
https://github.com/Vulnmachines/wordpress_cve-2021-29447
nomisec WORKING POC 3 stars
by thomas-osgood · poc
https://github.com/thomas-osgood/CVE-2021-29447
nomisec WORKING POC 3 stars
by elf1337 · poc
https://github.com/elf1337/blind-xxe-controller-CVE-2021-29447
nomisec WORKING POC 3 stars
by dnr6419 · poc
https://github.com/dnr6419/CVE-2021-29447
nomisec WORKING POC 2 stars
by Tea-On · poc
https://github.com/Tea-On/CVE-2021-29447-Authenticated-XXE-WordPress-5.6-5.7
nomisec WRITEUP 2 stars
by Abdulazizalsewedy · poc
https://github.com/Abdulazizalsewedy/CVE-2021-29447
nomisec WRITEUP 1 stars
by ArtemCyberLab · poc
https://github.com/ArtemCyberLab/Project-Project-Chimera-Exploiting-a-Modern-WordPress-XXE-to-Pillage-Secrets-
nomisec WORKING POC 1 stars
by b-abderrahmane · poc
https://github.com/b-abderrahmane/CVE-2021-29447-POC
nomisec WORKING POC 1 stars
by Val-Resh · poc
https://github.com/Val-Resh/CVE-2021-29447-POC
nomisec WORKING POC
by danilo1992-sys · poc
https://github.com/danilo1992-sys/CVE-2021-29447
nomisec WORKING POC
by rdana55 · poc
https://github.com/rdana55/CVE-2021-29447-PoC
nomisec WORKING POC
by davids52 · poc
https://github.com/davids52/cve-2021-29447_auto-script
nomisec WORKING POC
by 0xricksanchez · poc
https://github.com/0xricksanchez/CVE-2021-29447
nomisec WORKING POC
by magicrc · poc
https://github.com/magicrc/CVE-2021-29447
nomisec WORKING POC
by specializzazione-cyber-security · poc
https://github.com/specializzazione-cyber-security/demo-CVE-2021-29447-lezione
nomisec NO CODE
by andyhsu024 · poc
https://github.com/andyhsu024/CVE-2021-29447
nomisec WORKING POC
by viardant · poc
https://github.com/viardant/CVE-2021-29447
nomisec WORKING POC
by G01d3nW01f · poc
https://github.com/G01d3nW01f/CVE-2021-29447
nomisec WORKING POC
by AssassinUKG · poc
https://github.com/AssassinUKG/CVE-2021-29447

Scores

CVSS v3 7.1
EPSS 0.9050
EPSS Percentile 99.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N

Lab Environment

COMMUNITY
Community Lab
docker pull wordpress:5.7.0-php8.0
docker pull wordpress:5.6.2-php8.0-apache
+20 more repos

Details

CWE
CWE-611
Status published
Products (3)
debian/debian_linux 9.0
debian/debian_linux 10.0
wordpress/wordpress 5.6.0 - 5.7.1
Published Apr 15, 2021
Tracked Since Feb 18, 2026