Folders <= 3.0 and Folders Pro <= 3.0.2 - Directory Traversal via handle_folders_file_upload
Summary
| CVE | CVE-2024-2023 |
|---|---|
| State | PUBLISHED |
| Assigner | Wordfence |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2024-06-14 13:15:50 UTC |
| Updated | 2026-04-08 19:20:57 UTC |
| Description | The Folders and Folders Pro plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.0 in Folders and 3.0.2 in Folders Pro via the 'handle_folders_file_upload' function. This makes it possible for authenticated attackers, with author access and above, to upload files to arbitrary locations on the server. |
Risk And Classification
Primary CVSS: v3.1 4.3 MEDIUM from [email protected]
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
EPSS: 0.013690000 probability, percentile 0.802080000 (date 2026-04-13)
Problem Types: CWE-22 | CWE-22 CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | [email protected] | Secondary | 4.3 | MEDIUM | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N |
| 3.1 | CNA | DECLARED | 4.3 | MEDIUM | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N |
CVSS v3.1 Breakdown
Attack Vector
NetworkAttack Complexity
LowPrivileges Required
LowUser Interaction
NoneScope
UnchangedConfidentiality
NoneIntegrity
LowAvailability
NoneCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Premio | Folders Unlimited Folders To Organize Media Library Folder Pages Posts File Manager | affected 3.0 semver | Not specified |
| CNA | Premio | Folders Pro | affected 3.0.2 semver | Not specified |
| ADP | Premio | Folders | affected 3.0 semver | Not specified |
| ADP | Premio | Folders Pro | affected 3.0.2 semver | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| plugins.trac.wordpress.org/changeset/3070429/folders/trunk/includes/media.replace.php | af854a3a-2127-422b-91ae-364da2661108 | plugins.trac.wordpress.org | |
| plugins.trac.wordpress.org/browser/folders/tags/3.0/includes/media.replace.php | af854a3a-2127-422b-91ae-364da2661108 | plugins.trac.wordpress.org | |
| www.wordfence.com/threat-intel/vulnerabilities/id/b4cc839c-de7a-43eb-a7fa-b1049... | af854a3a-2127-422b-91ae-364da2661108 | www.wordfence.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
Vendor Comments And Credit
Discovery Credit
CNA: Colin Xu (en)
Additional Advisory Data
| Source | Time | Event |
|---|---|---|
| CNA | 2024-06-13T15:33:57.000Z | Disclosed |
There are currently no legacy QID mappings associated with this CVE.