Goal Reached Thanks to every supporter โ€” we hit 100%!

Goal: 1000 CNY ยท Raised: 1359 CNY

100%

CVE-2024-51793 โ€” AI Deep Analysis Summary

CVSS 10.0 ยท Critical

Q1What is this vulnerability? (Essence + Consequences)

๐Ÿšจ **Essence**: Critical Arbitrary File Upload in WordPress plugin 'Computer Repair Shop'. ๐Ÿ’ฅ **Consequences**: Attackers upload malicious files (e.g., Webshells) โ†’ Remote Code Execution (RCE) โ†’ Full Server Compromise.โ€ฆ

Q2Root Cause? (CWE/Flaw)

๐Ÿ” **Root Cause**: CWE-434: Unrestricted Upload of File with Dangerous Type. โš ๏ธ **Flaw**: Missing file type validation in the upload mechanism. No checks on what files are accepted.

Q3Who is affected? (Versions/Components)

๐Ÿ“ฆ **Affected Product**: RepairBuddy (Computer Repair Shop) WordPress Plugin. ๐Ÿ‘ค **Vendor**: Ateeq Rafeeq (Webful Creations). ๐Ÿ“‰ **Versions**: All versions **โ‰ค 3.8115**.

Q4What can hackers do? (Privileges/Data)

๐Ÿ•ต๏ธ **Attacker Actions**: Upload PHP Webshells or arbitrary scripts. ๐Ÿ”“ **Privileges**: Unauthenticated access (No login needed). ๐Ÿ’พ **Data Impact**: Full RCE.โ€ฆ

Q5Is exploitation threshold high? (Auth/Config)

๐Ÿ“‰ **Threshold**: **VERY LOW**. ๐Ÿ”‘ **Auth**: None required (Unauthenticated). โš™๏ธ **Config**: Exploitable via standard `admin-ajax.php` endpoint. Easy to trigger.

Q6Is there a public Exp? (PoC/Wild Exploitation)

๐Ÿ”ฅ **Public Exploits**: **YES**. ๐Ÿ“‚ **PoCs**: Multiple GitHub repos exist (e.g., Nxploited, KTN1990, 0axz-tools, JoshuaProvoste). ๐Ÿ’ฃ **Status**: 0-click RCE exploits available. Wild exploitation risk is HIGH.

Q7How to self-check? (Features/Scanning)

๐Ÿ”Ž **Self-Check**: Scan for 'Computer Repair Shop' or 'RepairBuddy' plugin. ๐Ÿ“Š **Version Check**: Verify installed version is **< 3.8116**. ๐Ÿ› ๏ธ **Tools**: Use WPScan or manual directory listing to detect plugin presence.

Q8Is it fixed officially? (Patch/Mitigation)

๐Ÿ›ก๏ธ **Official Fix**: **YES**. ๐Ÿ“ **Patch**: Update plugin to version **3.8116** or later. โœ… **Action**: Immediate upgrade recommended by vendor/security advisories.

Q9What if no patch? (Workaround)

๐Ÿšง **No Patch Workaround**: 1. **Disable Plugin**: Deactivate 'Computer Repair Shop' immediately. 2. **WAF Rules**: Block uploads to `admin-ajax.php` with PHP extensions. 3.โ€ฆ

Q10Is it urgent? (Priority Suggestion)

๐Ÿ”ด **Urgency**: **CRITICAL / IMMEDIATE**. โฑ๏ธ **Priority**: P1. ๐Ÿ’ก **Reason**: Unauthenticated RCE + Public Exploits = Active Threat. Patch NOW or disable plugin.