CRM Perks Forms <= 1.1.3 - Authenticated (Administrator+) Arbitrary File Upload
Published Aug 6, 2024
7.2
HIGHCVSS 3.1
EPSS 0.93%
Description
The CRM Perks Forms plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file validation on the 'handle_uploaded_files' function in versions up to, and including, 1.1.3. This makes it possible for authenticated attackers with administrator-level capabilities or above, to upload arbitrary files on the affected site's server which may make remote code execution possible.
Affected products
-
- Version 0StatusaffectedConstraints<=1.1.3
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Crmperks | CRM Perks Forms – WordPress Form Builder | unaffected |
|
- < 1.1.4
-
- Version 0StatusaffectedConstraints<=1.1.3
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Crmperks | Crm Perks Forms | n/a |
|
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (3)
- https://plugins.trac.wordpress.org/browser/crm-perks-forms/trunk/includes/front-form.php?rev=3003885#L3271 Product
- https://plugins.trac.wordpress.org/changeset/3016768/crm-perks-forms Patch
- https://www.wordfence.com/threat-intel/vulnerabilities/id/02c6ec97-50cc-4c61-9bb7-b94250d5dda3?source=cve Third Party Advisory
Change history (0)
No recorded changes yet.