WordPress Plugin Vulnerabilities

Directorist - Business Directory Plugin < 7.2.3 - Admin+ Arbitrary File Upload

Description

The plugin allows administrators to download other plugins from the same vendor directly to the site, but does not check the URL domain it gets the zip files from. This could allow administrators to run code on the server, which is a problem in multisite configurations.

Proof of Concept

Affects Plugins

Fixed in 7.2.3

References

Miscellaneous

Original Researcher
Rafie Muhammad
Submitter
Rafie Muhammad (Yeraisci)
Submitter website
Submitter twitter
Verified
Yes

Timeline

Publicly Published
2022-07-18 (about 3 years ago)
Added
2022-07-18 (about 3 years ago)
Last Updated
2023-04-15 (about 2 years ago)

Other