// For flags

CVE-2023-46784

WordPress ICS Calendar plugin <= 10.12.0.3 - SSRF and Arbitrary File Read vulnerability

Severity Score

8.2
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Attend
*SSVC
Descriptions

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Server-Side Request Forgery (SSRF) vulnerability in Room 34 Creative Services, LLC ICS Calendar ics-calendar allows Absolute Path Traversal, : Server Side Request Forgery.This issue affects ICS Calendar: from n/a through 10.12.0.3.

LimitaciĆ³n incorrecta de un nombre de ruta a un directorio restringido ("Path Traversal"), vulnerabilidad de Server-Side Request Forgery (SSRF) en Room 34 Creative Services, LLC ICS Calendar ics-calendar permite un path traversal absoluto: Server Side Request Forgery. Este problema afecta al Calendario ICS: desde n/a hasta 10.12.0.3.

The ICS Calendar plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 10.12.0.2. This makes it possible for authenticated attackers, with contributor-level access and above, to read the contents of arbitrary files on the server, which can contain sensitive information.

*Credits: Muhammad Daffa (Patchstack Alliance)
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
Low
Availability
None
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:Attend
Exploitation
None
Automatable
Yes
Tech. Impact
Partial
* Organization's Worst-case Scenario
Timeline
  • 2023-10-26 CVE Reserved
  • 2023-10-26 CVE Published
  • 2024-05-18 EPSS Updated
  • 2024-08-02 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
  • CWE-918: Server-Side Request Forgery (SSRF)
CAPEC
  • CAPEC-597: Absolute Path Traversal
  • CAPEC-664: Server Side Request Forgery
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Ics Calendar
Search vendor "Ics Calendar"
Ics Calendar
Search vendor "Ics Calendar" for product "Ics Calendar"
>= 0.0.0.0 <= 10.12.0.2
Search vendor "Ics Calendar" for product "Ics Calendar" and version " >= 0.0.0.0 <= 10.12.0.2"
en
Affected