Jetpack <= 13.7 - Unauthenticated Arbitrary Block & Shortcode Execution

2024-10-17 00:00
Marc-Alexandre Montpas

Strategic Overview

Status
Patched in 13.8
Affected Version<= 13.7
CVSS6.5Medium
CVECVE-2024-10075
View all Jetpack – WP Security, Backup, Speed, & Growth vulnerabilities

Vulnerability Overview

The The Jetpack – WP Security, Backup, Speed, & Growth plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 13.7. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.

Technical Analysis

REMEDIATION: Update to version 13.8, or a newer patched version --- IDENTIFIER: CWE-639 (Authorization Bypass Through User-Controlled Key) The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C