CVE-2022-4298
Wholesale Market < 2.2.1 - Unauthenticated Arbitrary File Download
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The Wholesale Market WordPress plugin before 2.2.1 does not have authorisation check, as well as does not validate user input used to generate system path, allowing unauthenticated attackers to download arbitrary file from the server.
El complemento Wholesale Market de WordPress anterior a 2.2.1 no tiene verificación de autorización y tampoco valida la entrada del usuario utilizada para generar la ruta del sistema, lo que permite a atacantes no autenticados descargar archivos arbitrarios desde el servidor.
The Wholesale Market plugin for WordPress is vulnerable to arbitrary file download due to missing file name validation via the ced_cwsm_log_download parameter in versions up to, and including, 2.2.0. This makes it possible for unauthenticated attackers to download arbitrary files on the affected site's server leading to Information Disclosure.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-12-06 CVE Reserved
- 2022-12-12 CVE Published
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://wpscan.com/vulnerability/7485ad23-6ea4-4018-88b1-174312a0a478 | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cedcommerce Search vendor "Cedcommerce" | Wholesale Market Search vendor "Cedcommerce" for product "Wholesale Market" | < 2.2.1 Search vendor "Cedcommerce" for product "Wholesale Market" and version " < 2.2.1" | wordpress |
Affected
|