RokMicroNews <= 1.5 - Multiple Vulnerabilities

2013-07-02 00:00
Eugene Dokukin

Strategic Overview

Status
Patched in 1.6
Affected PluginRokMicroNews
Affected Version<= 1.5
CVSS9.8Critical
CVEN/A
View all RokMicroNews vulnerabilities

Vulnerability Overview

The RokMicroNews plugin for WordPress is vulnerable to Cross-Site Scripting in versions up to, and including, 1.5 due to inclusion of a vulnerable version of TimThumb. This makes it possible for attackers to inject arbitrary web scripts that execute in a victim's browser. The plugin is also vulnerable to Arbitrary File Upload, Denial of Service Attacks, and Full Path Disclosure. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected sites server which may make remote code execution possible, deny availability to legitimate users, and read sensitive information such as the full path of the WordPress installation.

Technical Analysis

REMEDIATION: Update to version 1.6, or a newer patched version --- IDENTIFIER: CWE-434 (Unrestricted Upload of File with Dangerous Type) The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C