Advertisement






WordPress Design By SmartCatDesign.Net ImageManager Plugin Remote File Upload Vulnerability

CVE Category Price Severity
CVE-2021-24166 CWE-264 Unknown High
Author Risk Exploitation Type Date
Local Man High Remote 2018-06-23
CPE
cpe:cpe:/a:wordpress:design_by_smartcatdesign_net_imagemanager_plugin
CVSS EPSS EPSSP
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H 0.02192 0.50148

CVSS vector description

Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2018060251

Below is a copy:

WordPress Design By SmartCatDesign.Net ImageManager Plugin Remote File Upload Vulnerability
#################################################################################################

# Exploit Title : WordPress Design By SmartCatDesign.Net ImageManager Plugin Remote File Upload Vulnerability
# Author [ Discovered By ] : KingSkrupellos from Cyberizm Digital Security Army
# Date : 23/06/2018
# Vendor Homepage : smartcatdesign.net
# Tested On : Windows
# Category : WebApps
# Exploit Risk : Medium
# CWE : CWE-264 [ Permissions, Privileges, and Access Controls ]

#################################################################################################

# Google Dorks : 

intext:''Design By Smartcat''

intext:''Karma Theme - Designed by SmartCat''

# Exploit : /wp-content/plugins/ImageManager/manager.php

# PATH :  /wp-content/uploads/[yourfilename.png]

# Note [ Very small size picture ] =>  /wp-content/uploads/.thumbs/.[yourfilename.png]

# Create a New Folder in the WordPress ImageManager => /wp-content/plugins/ImageManager/newfolder.php

# PATH : /wp-content/uploads/[CREATED-FOLDER]/[yourfilename.png]

# Note : Allowed File Extensions : .gif .jpg .jpeg .png

# Note : An attacker can delete created folders in the ImageManager Plugin.

#################################################################################################

# Example Site :  magicrelationship.net/blog/wp-content/plugins/ImageManager/manager.php

# Proof of Concept for this Vulnerability : archive.is/DRb4j ~ archive.is/48DC4

#################################################################################################

# Discovered By KingSkrupellos from Cyberizm.Org Digital Security Team 

#################################################################################################

Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum