CVE-2023-6634
LearnPress <= 4.2.5.7 - Command Injection
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The LearnPress plugin for WordPress is vulnerable to Command Injection in all versions up to, and including, 4.2.5.7 via the get_content function. This is due to the plugin making use of the call_user_func function with user input. This makes it possible for unauthenticated attackers to execute any public function with one parameter, which could result in remote code execution.
El complemento LearnPress para WordPress es vulnerable a la inyección de comandos en todas las versiones hasta la 4.2.5.7 incluida a través de la función get_content. Esto se debe a que el complemento utiliza la función call_user_func con la entrada del usuario. Esto hace posible que atacantes no autenticados ejecuten cualquier función pública con un parámetro, lo que podría resultar en la ejecución remota de código.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-12-08 CVE Reserved
- 2024-01-03 CVE Published
- 2024-04-05 First Exploit
- 2024-08-02 CVE Updated
- 2024-11-06 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection')
- CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
https://plugins.trac.wordpress.org/changeset/3013957/learnpress | Third Party Advisory | |
https://www.wordfence.com/threat-intel/vulnerabilities/id/21291ed7-cdc0-4698-9ec4-8417160845ed?source=cve | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://github.com/krn966/CVE-2023-6634 | 2024-04-05 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Thimpress Search vendor "Thimpress" | Learnpress Search vendor "Thimpress" for product "Learnpress" | <= 4.2.5.7 Search vendor "Thimpress" for product "Learnpress" and version " <= 4.2.5.7" | wordpress |
Affected
|