755
VMScore

CVE-2017-16949

Published: 19/12/2017 Updated: 12/01/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in the AccessKeys AccessPress Anonymous Post Pro plugin up to and including 3.1.9 for WordPress. Improper input sanitization allows the malicious user to override the settings for allowed file extensions and upload file size, related to inc/cores/file-uploader.php and file-uploader/file-uploader-class.php. This allows the malicious user to upload anything they want to the server, as demonstrated by an action=ap_file_upload_action&allowedExtensions[]=php request to /wp-admin/admin-ajax.php that results in a .php file upload and resultant PHP code execution.

Vulnerable Product Search on Vulmon Subscribe to Product

accesspressthemes anonymous post pro

Exploits

# Exploit Title: Unauthenticated Arbitrary File Upload # Date: November 12, 2017 # Exploit Author: Colette Chamberland # Author contact: colette@defiantcom # Author homepage: defiantcom # Vendor Homepage: accesspressthemescom/ # Software Link: codecanyonnet/item/accesspress-anonymous-post-pro/9160446 # Version: < 3 ...
Accesspress Anonymous Post Pro versions prior to 320 suffers from an arbitrary file upload vulnerability ...