| Vulnerability Name: | CVE-2018-1000773 (CCN-150603) | ||||||||||||||||||||||||||||||||||||
| Assigned: | 2018-08-20 | ||||||||||||||||||||||||||||||||||||
| Published: | 2018-08-20 | ||||||||||||||||||||||||||||||||||||
| Updated: | 2018-11-14 | ||||||||||||||||||||||||||||||||||||
| Summary: | WordPress version 4.9.8 and earlier contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution due to an incomplete fix for CVE-2017-1000600. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. | ||||||||||||||||||||||||||||||||||||
| CVSS v3 Severity: | 8.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H) 7.7 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:U/RC:R)
5.6 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:U/RL:U/RC:R)
| ||||||||||||||||||||||||||||||||||||
| CVSS v2 Severity: | 6.5 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
| ||||||||||||||||||||||||||||||||||||
| Vulnerability Type: | CWE-20 | ||||||||||||||||||||||||||||||||||||
| Vulnerability Consequences: | Gain Access | ||||||||||||||||||||||||||||||||||||
| References: | Source: MITRE Type: CNA CVE-2018-1000773 Source: BID Type: Third Party Advisory, VDB Entry 105306 Source: CCN Type: BID-105306 WordPress CVE-2018-1000773 Incomplete Fix Arbitrary File Upload Vulnerability Source: XF Type: UNKNOWN wp-cve20181000773-code-exec(150603) Source: CCN Type: WordPress Web site WordPress Source: CCN Type: The Register Web site So phar, so FUD: PHP flaw puts WordPress sites at risk of hacks Source: MISC Type: Third Party Advisory https://www.theregister.co.uk/2018/08/20/php_unserialisation_wordpress_vuln/ Source: MISC Type: Third Party Advisory https://youtu.be/GePBmsNJw6Y?t=1763 | ||||||||||||||||||||||||||||||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||||||||||
| Oval Definitions | |||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||
| BACK | |||||||||||||||||||||||||||||||||||||