CVE-2021-24160
Responsive Menu 4.0.0 - 4.0.3 - Authenticated Arbitrary File Upload
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
4Exploited in Wild
-Decision
Descriptions
In the Reponsive Menu (free and Pro) WordPress plugins before 4.0.4, subscribers could upload zip archives containing malicious PHP files that would get extracted to the /rmp-menu/ directory. These files could then be accessed via the front end of the site to trigger remote code execution and ultimately allow an attacker to execute commands to further infect a WordPress site.
En los plugins de WordPress Reponsive Menu (free y Pro) versiones anteriores a 4.0.4, los suscriptores podían subir archivos zip que contenían archivos PHP maliciosos que se extraían al directorio /rmp-menu/. Se podía acceder a estos archivos por medio del front-end del sitio para desencadenar una ejecución de código remota y, en última instancia, permitir a un atacante ejecutar comandos para infectar aún más un sitio de WordPress
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-01-14 CVE Reserved
- 2021-02-10 CVE Published
- 2022-05-30 First Exploit
- 2024-08-03 CVE Updated
- 2024-12-21 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-434: Unrestricted Upload of File with Dangerous Type
CAPEC
References (4)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Expresstech Search vendor "Expresstech" | Responsive Menu Search vendor "Expresstech" for product "Responsive Menu" | < 4.0.4 Search vendor "Expresstech" for product "Responsive Menu" and version " < 4.0.4" | free, wordpress |
Affected
| ||||||
Expresstech Search vendor "Expresstech" | Responsive Menu Search vendor "Expresstech" for product "Responsive Menu" | < 4.0.4 Search vendor "Expresstech" for product "Responsive Menu" and version " < 4.0.4" | pro, wordpress |
Affected
|