CVE-2022-1777
Last modified
CVE-2022-1777 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. The Filr WordPress plugin before 1.2.2.1 does not have authorisation check in two of its AJAX actions, allowing them to be called by any authenticated users, such as subscriber. They are are protected with a nonce, however the nonce is leaked on the dashboard. EPSS estimates a 1.23% chance of exploitation in the next 30 days.
Description
The Filr WordPress plugin before 1.2.2.1 does not have authorisation check in two of its AJAX actions, allowing them to be called by any authenticated users, such as subscriber. They are are protected with a nonce, however the nonce is leaked on the dashboard. This could allow them to upload arbitrary HTML files as well as delete all files or arbitrary ones.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Filr Project | Filr | < 1.2.2.1 |
References
- https://wpscan.com/vulnerability/a50dc7f8-a9e6-41fa-a047-ad1c3bc309b4Exploit, Third Party Advisory
- https://wpscan.com/vulnerability/a50dc7f8-a9e6-41fa-a047-ad1c3bc309b4Exploit, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-1777?
How severe is CVE-2022-1777?
How do I fix CVE-2022-1777?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-1771Uncontrolled Recursion in GitHub repository vim/vim prior to…5.5
- CVE-2022-1772The Google Places Reviews WordPress plugin before 2.0.0 does…4.8
- CVE-2022-1773The WP Athletics WordPress plugin through 1.1.7 does not san…6.1
- CVE-2022-1774Exposure of Sensitive Information to an Unauthorized Actor i…6.1
- CVE-2022-1775Weak Password Requirements in GitHub repository polonel/trud…9.8
- CVE-2022-1776The Popups, Welcome Bar, Optins and Lead Generation Plugin W…5.4
- CVE-2022-1778Improper Input Validation vulnerability in Hitachi Energy Mi…4.4
- CVE-2022-1779The Auto Delete Posts WordPress plugin through 1.3.0 does no…8.1
- CVE-2022-1780The LaTeX for WordPress plugin through 3.4.10 does not have …5.4
- CVE-2022-1781The postTabs WordPress plugin through 2.10.6 does not have C…5.4
- CVE-2022-1782Cross-site Scripting (XSS) - Generic in GitHub repository er…6.1
- CVE-2022-1783An issue has been discovered in GitLab CE/EE affecting all v…2.7
Are you affected by CVE-2022-1777?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
