Lucene search

K
cve[email protected]CVE-2023-3325
HistoryJun 20, 2023 - 5:15 a.m.

CVE-2023-3325

2023-06-2005:15:09
CWE-331
web.nvd.nist.gov
31
cve
2023
3325
cms commander
wordpress
authorization bypass
cryptographic signature
plugin vulnerability
privilege escalation

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

9.5 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.3%

The CMS Commander plugin for WordPress is vulnerable to authorization bypass due to the use of an insufficiently unique cryptographic signature on the ‘cmsc_add_site’ function in versions up to, and including, 2.287. This makes it possible for unauthenticated attackers to the plugin to change the ‘_cmsc_public_key’ in the plugin config, providing access to the plugin’s remote control functionalities, such as creating an admin access URL, which can be used for privilege escalation. This can only be exploited if the plugin has not been configured yet, however, if combined with another arbitrary plugin installation and activation vulnerability, the impact can be severe.

Affected configurations

Vulners
NVD
Node
thoeftercms_commander_–_manage_multiple_sitesRange2.287

CNA Affected

[
  {
    "vendor": "thoefter",
    "product": "CMS Commander – Manage Multiple Sites",
    "versions": [
      {
        "version": "*",
        "status": "affected",
        "lessThanOrEqual": "2.287",
        "versionType": "semver"
      }
    ],
    "defaultStatus": "unaffected"
  }
]

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

9.5 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.3%

Related for CVE-2023-3325