Record summary

CVE-2024-6220 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.

Description

The 简数采集器 (Keydatas) plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the keydatas_downloadImages function in all versions up to, and including, 2.5.2. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Jul 17, 2024 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 17, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

简数采集器

zhengdon

Default status: unaffected

CVE ListThrough 2.5.2affected

Nuclei templates

1
ProjectDiscoveryCRITICALWordPress Keydatas ≤ 2.5.2 - Arbitrary File UploadCVSS 9.8

The Keydatas plugin for WordPress (known in Chinese as "简数采集器") is vulnerable to unrestricted file uploads due to missing file-type validation in the keydatas_downloadImages function in all versions up to and including 2.5.2. An unauthenticated attacker can upload arbitrary files to the server — potentially leading to remote code execution, site takeover, or other severe compromise.

Impact

Unauthenticated attackers can upload arbitrary files including PHP web shells through the keydatas_downloadImages function, achieving remote code execution and complete site compromise.

Remediation

Update Keydatas plugin to version 2.5.3 or later to address the arbitrary file upload vulnerability.

WeaknessesCWE-434
Authorshnd3884
Template tagscvecve2024wpwp-pluginwordpresskeydatasfile-uploadrcevkev
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:keydatas:keydatas:*:*:*:*:*:wordpress:*:*

Source: ProjectDiscovery

References

4