The File Manager (wp-file-manager) plugin before 6.9 for WordPress allows remote attackers to upload and execute arbitrary PHP code because it renames an unsafe example elFinder connector file to have the .php extension. This, for example, allows attackers to run the elFinder upload (or mkfile and put) command to write PHP code into the wp-content/plugins/wp-file-manager/lib/files/ directory. This was exploited in the wild in August and September 2020.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-09-09T00:00:00
Updated: 2024-08-04T15:33:05.256Z
Reserved: 2020-09-09T00:00:00
Link: CVE-2020-25213
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-09-09T16:15:12.127
Modified: 2024-11-21T05:17:40.217
Link: CVE-2020-25213
Redhat
No data.