WordPress Plugin Vulnerabilities

WP All Export (Free < 1.4.1, Pro < 1.8.6) - Author+ PHAR Deserialization via CSRF

Description

The plugin does not check nonce tokens early enough in the request lifecycle, allowing attackers with the ability to upload files to make logged in users perform unwanted actions leading to PHAR deserialization, which may lead to remote code execution.

Proof of Concept

Affects Plugins

Fixed in 1.4.1
Fixed in 1.8.6

References

Classification

Miscellaneous

Submitter
Alex Sanford
Submitter website
Verified
Yes

Timeline

Publicly Published
2023-11-21 (about 2 years ago)
Added
2023-11-21 (about 2 years ago)
Last Updated
2023-11-21 (about 2 years ago)

Other