CVE-2021-39312
HIGH EXPLOITED NUCLEITrue Ranker <= 2.2.2 - Unauthenticated Arbitrary File Read via src Parameter
Title source: llmExploitation Summary
CVE-2021-39312 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including Liad Levy. A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit leverages an arbitrary file read vulnerability in The True Ranker WordPress plugin (versions <= 2.2.2) by sending a crafted POST request to a vulnerable endpoint, allowing unauthenticated attackers to read sensitive files like wp-config.php.
Description
The True Ranker plugin <= 2.2.2 for WordPress allows arbitrary files, including sensitive configuration files such as wp-config.php, to be accessed via the src parameter found in the ~/admin/vendor/datatables/examples/resources/examples.php file.
Exploits (1)
This exploit leverages an arbitrary file read vulnerability in The True Ranker WordPress plugin (versions <= 2.2.2) by sending a crafted POST request to a vulnerable endpoint, allowing unauthenticated attackers to read sensitive files like wp-config.php.
Nuclei Templates (1)
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N