Goal Reached Thanks to every supporter โ€” we hit 100%!

Goal: 1000 CNY ยท Raised: 1359 CNY

100%

CVE-2024-49291 โ€” AI Deep Analysis Summary

CVSS 10.0 ยท Critical

Q1What is this vulnerability? (Essence + Consequences)

๐Ÿšจ **Essence**: Unrestricted file upload in Cooked Pro. ๐Ÿ’ฅ **Consequences**: Attackers can upload malicious files (e.g., webshells). This leads to full server compromise, data theft, and site defacement.โ€ฆ

Q2Root Cause? (CWE/Flaw)

๐Ÿ›ก๏ธ **Root Cause**: CWE-434 (Unrestricted Upload of File with Dangerous Type). The plugin fails to validate file types or extensions before saving them to the server. It trusts user input blindly.

Q3Who is affected? (Versions/Components)

๐Ÿ“ฆ **Affected**: WordPress Plugin **Cooked Pro**. ๐Ÿ“… **Version**: Before **1.8.0**. ๐Ÿข **Vendor**: Gora Tech LLC. Any site running older versions is at risk.

Q4What can hackers do? (Privileges/Data)

๐Ÿ”“ **Capabilities**: Upload arbitrary files. ๐Ÿ“‚ **Data Access**: Read/Write server files. ๐Ÿ’ป **Privileges**: Execute code via uploaded scripts (e.g., PHP shells). Full remote code execution potential.

Q5Is exploitation threshold high? (Auth/Config)

โšก **Threshold**: LOW. ๐Ÿ”‘ **Auth**: Unauthenticated (PR:N). ๐Ÿ–ฑ๏ธ **UI**: No user interaction needed (UI:N). ๐ŸŒ **Network**: Remote (AV:N). Easy to exploit from anywhere.

Q6Is there a public Exp? (PoC/Wild Exploitation)

๐Ÿ” **Exploit Status**: Public references exist (Patchstack). While specific PoC code isn't listed in the JSON, the vulnerability is well-documented. Wild exploitation is likely given the low barrier.

Q7How to self-check? (Features/Scanning)

๐Ÿ”Ž **Self-Check**: Scan for **Cooked Pro** plugin. Check version number. If < 1.8.0, you are vulnerable. Look for suspicious file uploads in the plugin's upload directory.

Q8Is it fixed officially? (Patch/Mitigation)

๐Ÿฉน **Fix**: Upgrade to **Cooked Pro 1.8.0** or later. The vendor (Gora Tech LLC) has addressed the unrestricted upload flaw in the patched version.

Q9What if no patch? (Workaround)

๐Ÿšง **No Patch?**: Disable the plugin immediately. ๐Ÿ›‘ Remove file upload capabilities if possible. ๐Ÿงฑ Use WAF rules to block uploads of executable extensions (.php, .exe). Monitor server logs closely.

Q10Is it urgent? (Priority Suggestion)

๐Ÿ”ฅ **Urgency**: CRITICAL. CVSS Score is High (9.8 implied by vector). Unauthenticated RCE risk. Patch immediately to prevent server takeover. Do not delay.