CVE-2024-9224
MEDIUMHello World < 2.1.1 - Authenticated Arbitrary File Read via hello_world_lyric()
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2024-9224. PoCs published by certuscyber, RandomRobbieBF.
AI-analyzed exploit summary The repository contains functional exploit code for multiple WordPress plugin vulnerabilities, including SQL injection (CVE-2014-5182, CVE-2014-5185) and insecure deserialization (CVE-2020-29045). Each PoC includes detailed steps, authentication handling, and payload delivery.
Description
The Hello World plugin for WordPress is vulnerable to Arbitrary File Reading in all versions up to, and including, 2.1.1 via the hello_world_lyric() function. This makes it possible for authenticated attackers, with subscriber-level access and above, to read the contents of arbitrary files on the server, which can contain sensitive information.
Exploits (2)
The repository contains functional exploit code for multiple WordPress plugin vulnerabilities, including SQL injection (CVE-2014-5182, CVE-2014-5185) and insecure deserialization (CVE-2020-29045). Each PoC includes detailed steps, authentication handling, and payload delivery.
This PoC exploits an authenticated arbitrary file read vulnerability in the Hello World WordPress plugin (versions <= 2.1.1) via the hello_world_lyric() function. It logs in as a subscriber-level user and reads arbitrary files by manipulating the nonce and payload.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N