CVE-2022-1206

HIGH

AdRotate Banner Manager - WordPress <5.13.2 - RCE

Title source: llm
STIX 2.1

Description

The AdRotate Banner Manager – The only ad manager you'll need plugin for WordPress is vulnerable to arbitrary file uploads due to missing file extension sanitization in the adrotate_insert_media() function in all versions up to, and including, 5.13.2. This makes it possible for authenticated attackers, with administrator-level access and above, to upload arbitrary files with double extensions on the affected site's server which may make remote code execution possible. This is only exploitable on select instances where the configuration will execute the first extension present.

Scores

CVSS v3 7.2
EPSS 0.0778
EPSS Percentile 92.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-434
Status published
Products (2)
adegans/AdRotate Banner Manager < 5.13.2
adegans/AdRotate Banner Manager – The only ad manager you&#039;ll need < 5.13.2
Published Aug 20, 2024
Tracked Since Feb 18, 2026