# WooCommerce Ultimate Gift Card <= 2.6.0 - 未认证任意文件上传漏洞
## 漏洞概述
WooCommerce Ultimate Gift Card 插件由于在 `mwb_wgm_preview_mail` 和 `mwb_wgm_woocommerce_add_cart_item_data` 函数中对文件类型验证不足,允许任意文件上传。这可能导致未授权的攻击者在受影响站点的服务器上上传任意文件,并可能实现远程代码执行。
## 影响版本
- 所有版本 <= 2.6.0
## 细节
插件的 `mwb_wgm_preview_mail` 和 `mwb_wgm_woocommerce_add_cart_item_data` 函数缺乏足够的文件类型验证。攻击者可以利用此漏洞上传恶意文件,从而可能在服务器上执行任意代码。
## 影响
未授权的攻击者能够上传任意文件到服务器,可能导致远程代码执行,从而控制服务器。
# | POC 描述 | 源链接 | 神龙链接 |
---|---|---|---|
1 | The WooCommerce Ultimate Gift Card plugin for WordPress is vulnerable to arbitrary file uploads. | https://github.com/KTN1990/CVE-2024-8425 | POC详情 |
2 | The WooCommerce Ultimate Gift Card plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'mwb_wgm_preview_mail' and 'mwb_wgm_woocommerce_add_cart_item_data' functions in all versions up to, and including, 2.6.0. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-8425.yaml | POC详情 |
标题: WooCommerce Ultimate Gift Card <= 2.6.0 - Unauthenticated Arbitrary File Upload -- 🔗来源链接
标签:
标题: WooCommerce Ultimate Gift Card - Create, Sell and Manage Gift Cards with Customized Email Templates by WPSwings -- 🔗来源链接
标签:
暂无评论