CVE-2023-6989
CRITICAL NUCLEIShield Security < 18.5.10 - Unauthenticated Local File Inclusion via render_action_template Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-6989. PoCs published by halilkirazkaya. A Nuclei detection template is also available.
AI-analyzed exploit summary The repository contains functional exploit code for multiple CVEs, including CVE-2023-6989, demonstrating vulnerabilities such as remote file inclusion, path traversal, and unauthorized metadata updates. Each PoC includes specific HTTP requests or commands to exploit the vulnerabilities.
Description
The Shield Security – Smart Bot Blocking & Intrusion Prevention Security plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 18.5.9 via the render_action_template parameter. This makes it possible for unauthenticated attacker to include and execute PHP files on the server, allowing the execution of any PHP code in those files.
Exploits (1)
The repository contains functional exploit code for multiple CVEs, including CVE-2023-6989, demonstrating vulnerabilities such as remote file inclusion, path traversal, and unauthorized metadata updates. Each PoC includes specific HTTP requests or commands to exploit the vulnerabilities.
Nuclei Templates (1)
http.html:/wp-content/plugins/wp-simple-firewall
body=/wp-content/plugins/wp-simple-firewall
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H