Record summary

CVE-2024-4399 has a selected CVSS score of 9.1 (critical); EIP currently links 1 Nuclei template.

Description

The does not validate a parameter before making a request to it, which could allow unauthenticated users to perform SSRF attack

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationNone
AutomatableYes
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated May 23, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

cas

Default status: affected

CVE ListThrough 1.0.0affected

Default status: unknown

CVE ListThrough 1.0.0affected

Nuclei templates

1
ProjectDiscoveryCRITICALWordPress CAS Theme <= 1.0.0 - Server-Side Request ForgeryCVSS 9.1

The CAS WordPress theme through version 1.0.0 is vulnerable to Server-Side Request Forgery (SSRF) via the 'url' parameter in the get_remote_data.php script. This vulnerability allows unauthenticated attackers to make the server perform requests to arbitrary URLs.

Impact

Unauthenticated attackers can force the server to make arbitrary requests via SSRF, potentially accessing internal services.

Remediation

Update CAS WordPress theme to a version later than 1.0.0 that patches the SSRF vulnerability.

WeaknessesCWE-918
Authorsritikchaddha
Template tagscvecve2024wpwordpresswp-themessrfcasoastvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
FOFA: body="wp-content/themes/cas/"

Source: ProjectDiscovery

References

2