CVE-2023-47529
MEDIUMThemeIsle Cloud Templates & Patterns collection <= 1.2.2 - Exposure of Sensitive Information via Log File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-47529. PoCs published by RandomRobbieBF.
AI-analyzed exploit summary This repository contains a functional proof-of-concept for CVE-2023-47529, demonstrating sensitive information exposure via a predictable log file path in the Cloud Templates & Patterns collection WordPress plugin. The PoC includes a Nuclei template to detect the vulnerability by fetching the log file and verifying its contents.
Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ThemeIsle Cloud Templates & Patterns collection.This issue affects Cloud Templates & Patterns collection: from n/a through 1.2.2.
Exploits (1)
This repository contains a functional proof-of-concept for CVE-2023-47529, demonstrating sensitive information exposure via a predictable log file path in the Cloud Templates & Patterns collection WordPress plugin. The PoC includes a Nuclei template to detect the vulnerability by fetching the log file and verifying its contents.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N