2024-12-08 03:06:42 +00:00

78 lines
2.5 KiB
JSON

{
"id": "CVE-2023-3720",
"sourceIdentifier": "contact@wpscan.com",
"published": "2023-08-30T15:15:09.410",
"lastModified": "2024-11-21T08:17:54.867",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Upload Media By URL WordPress plugin before 1.0.8 does not have CSRF check when uploading files, which could allow attackers to make logged in admins upload files (including HTML containing JS code for users with the unfiltered_html capability) on their behalf."
},
{
"lang": "es",
"value": "El plugin Upload Media By URL de WordPress anterior a la versi\u00f3n 1.0.8 no dispone de comprobaci\u00f3n CSRF al subir archivos, lo que podr\u00eda permitir a los atacantes hacer que los administradores que han iniciado sesi\u00f3n suban archivos (incluyendo HTML que contenga c\u00f3digo JS para usuarios con la capacidad unfiltered_html) en su nombre."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N",
"baseScore": 6.5,
"baseSeverity": "MEDIUM",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "NONE",
"userInteraction": "REQUIRED",
"scope": "UNCHANGED",
"confidentialityImpact": "NONE",
"integrityImpact": "HIGH",
"availabilityImpact": "NONE"
},
"exploitabilityScore": 2.8,
"impactScore": 3.6
}
]
},
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:notetoservices:upload_media_by_url:*:*:*:*:*:wordpress:*:*",
"versionEndExcluding": "1.0.8",
"matchCriteriaId": "88BAE1F4-FF92-416A-886D-65CA4E6799CF"
}
]
}
]
}
],
"references": [
{
"url": "https://wpscan.com/vulnerability/16375a7f-0a9f-4961-8510-d047ffbf3954",
"source": "contact@wpscan.com",
"tags": [
"Exploit",
"Third Party Advisory"
]
},
{
"url": "https://wpscan.com/vulnerability/16375a7f-0a9f-4961-8510-d047ffbf3954",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Exploit",
"Third Party Advisory"
]
}
]
}