CVE-2024-10708
System Dashboard < 2.8.15 - Admin+ Path Traversal
Record summary
CVE-2024-10708 has a selected CVSS score of 4.9 (medium); EIP currently links 1 Nuclei template.
Description
The System Dashboard WordPress plugin before 2.8.15 does not validate user input used in a path, which could allow high privilege users such as admin to perform path traversal attacks an read arbitrary files on the server
Exploitation context
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Dec 10, 2024 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
System DashboardDefault status: unaffected | CVE List | Before 2.8.15 | affected |
system_dashboardBrowse bowo / system_dashboardDefault status: unknown | CVE List | Before 2.8.15 | affected |
Nuclei templates
1ProjectDiscoveryMEDIUMSystem Dashboard < 2.8.15 - Admin+ Path TraversalCVSS 4.9
The System Dashboard WordPress plugin before 2.8.15 does not validate user input used in a path, which could allow high privilege users such as admin to perform path traversal attacks an read arbitrary files on the server
Impact
Authenticated administrators can exploit path traversal through the filename parameter in the sd_viewer action to read arbitrary server files including wp-config.php, exposing database credentials and sensitive configuration data.
Remediation
Fixed in 2.8.15
Source: ProjectDiscovery