ZeroHour

CVE-2023-0159

PoC
CVSS 3.1
7.5 high
EPSS
55%p99
Published
()
Modified
Description

The Extensive VC Addons for WPBakery page builder WordPress plugin before 1.9.1 does not validate a parameter passed to the php extract function when loading templates, allowing an unauthenticated attacker to override the template path to read arbitrary files from the hosts file system. This may be escalated to RCE using PHP filter chains.

Vendors
wprealize
Products
extensive vc addons for wpbakery page builder
Ecosystems
WordPress
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.