CVE-2024-11972
Hunk Companion < 1.9.0 - Unauthenticated Plugin Installation
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
5Exploited in Wild
-Decision
Descriptions
The Hunk Companion WordPress plugin before 1.9.0 does not correctly authorize some REST API endpoints, allowing unauthenticated requests to install and activate arbitrary Hunk Companion WordPress plugin before 1.9.0 from the WordPress.org repo, including vulnerable Hunk Companion WordPress plugin before 1.9.0 that have been closed.
El complemento Hunk Companion para WordPress anterior a la versión 1.9.0 no autoriza correctamente algunos endpoints de la API REST, lo que permite que solicitudes no autenticadas instalen y activen complementos Hunk Companion para WordPress anteriores a la versión 1.9.0 arbitrarios desde el repositorio de WordPress.org, incluido el complemento Hunk Companion para WordPress anterior a la versión 1.9.0 vulnerable que se ha cerrado.
The Hunk Companion plugin for WordPress is vulnerable to unauthorized plugin installation/activation due to a missing capability check on the /wp-json/hc/v1/themehunk-import REST API endpoint in all versions up to, and including, 1.8.5. This makes it possible for unauthenticated attackers to install and activate arbitrary plugins which can be leveraged to achieve remote code execution if another vulnerable plugin is installed and activated. This is a bypass to CVE-2024-9707.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2024-11-28 CVE Reserved
- 2024-12-10 CVE Published
- 2024-12-16 First Exploit
- 2025-01-01 EPSS Updated
- 2025-01-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-862: Missing Authorization
CAPEC
References (5)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://packetstorm.news/files/id/183164 | 2024-12-16 | |
https://github.com/JunTakemura/exploit-CVE-2024-11972 | 2024-12-18 | |
https://github.com/RonF98/CVE-2024-11972-POC | 2025-01-20 | |
https://github.com/Nxploited/CVE-2024-11972-PoC | 2025-01-29 | |
https://wpscan.com/vulnerability/4963560b-e4ae-451d-8f94-482779c415e4 | 2024-12-31 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Unknown Search vendor "Unknown" | Hunk Companion Search vendor "Unknown" for product "Hunk Companion" | < 1.9.0 Search vendor "Unknown" for product "Hunk Companion" and version " < 1.9.0" | en |
Affected
|