The Extensive VC Addons for WPBakery page builder WordPress plugin before 1.9.1 does not validate a parameter passed to the php extract function when loading templates, allowing an unauthenticated attacker to override the template path to read arbitrary files from the hosts file system.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/239ea870-66e5-4754-952e-74d4dd60b809 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2023-02-13 07:15
Updated : 2023-02-15 08:03
NVD link : CVE-2023-0159
Mitre link : CVE-2023-0159
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
wprealize
- extensive_vc_addons_for_wpbakery_page_builder