CVE-2023-5355
Awesome Support < 6.1.5 - Submitter+ Arbitrary File Deletion
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The Awesome Support WordPress plugin before 6.1.5 does not sanitize file paths when deleting temporary attachment files, allowing a ticket submitter to delete arbitrary files on the server.
El complemento Awesome Support de WordPress anterior a 6.1.5 no sanitiza las rutas de los archivos al eliminar archivos adjuntos temporales, lo que permite al remitente del ticket eliminar archivos arbitrarios en el servidor.
The Awesome Support – WordPress HelpDesk & Support Plugin plugin for WordPress is vulnerable to arbitrary file deletion in all versions up to, and including, 6.1.4. This is due to insufficient controls on paths being supplied when a user deletes an attachment from a ticket. This makes it possible for authenticated attackers, with ticket submitting-level access to delete arbitrary files on the site which can be used to achieve remote code execution and take over the site.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-10-03 CVE Reserved
- 2023-10-16 CVE Published
- 2024-08-02 CVE Updated
- 2024-08-02 First Exploit
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://wpscan.com/vulnerability/d6f7faca-dacf-4455-a837-0404803d0f25 | 2024-08-02 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Getawesomesupport Search vendor "Getawesomesupport" | Awesome Support Search vendor "Getawesomesupport" for product "Awesome Support" | < 6.1.5 Search vendor "Getawesomesupport" for product "Awesome Support" and version " < 6.1.5" | wordpress |
Affected
|