Page Builder: KingComposer < 2.9.4 - Arbitrary File Upload
2020-06-15 00:00
Jerome BruandetStrategic Overview
StatusPatched in 2.9.4
Affected Version
<= 2.9.3CVSS8.8High
CVE
CVE-2020-36701Vulnerability Overview
The Page Builder: KingComposer plugin for WordPress is vulnerable to Arbitrary File Uploads in versions up to, and including, 2.9.3 via the 'process_bulk_action' function in the 'kingcomposer/includes/kc.extensions.php' file. This makes it possible for authenticated users with author level permissions and above to upload arbitrary files onto the server which can be used to execute code on the server.
Technical Analysis
REMEDIATION: Update to version 2.9.4, or a newer patched version --- IDENTIFIER: CWE-434 (Unrestricted Upload of File with Dangerous Type) The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C