WordPress Plugin Vulnerabilities

Ajax Load More < 5.5.4 - PHAR Deserialization via CSRF

Description

The plugin does not validate user input before using it to generate a path, allowing attacker to fully control it and use any wrapper, such as PHAR which could lead to deserialisation if they can trick an admin to open a malicious link and a suitable gadget chain is present

Affects Plugins

Fixed in 5.5.4

References

Classification

Type
OBJECT INJECTION
CWE
CVSS

Miscellaneous

Original Researcher
Rasoul Jahanshahi
Verified
No

Timeline

Publicly Published
2022-08-22 (about 3 years ago)
Added
2022-08-22 (about 3 years ago)
Last Updated
2023-05-13 (about 2 years ago)

Other