QID 731059
Date Published: 2024-01-03
QID 731059: WordPress Plugin Media Library Assistant Remote Code Execution (RCE) Vulnerability
The Media Library Assistant provides several enhancements for managing the Media Library.
CVE-2023-4634: The Media Library Assistant plugin for WordPress is vulnerable to Local File Inclusion and Remote Code Execution in versions up to, and including, 3.09. Allowing unauthenticated attackers to supply files via FTP that will make directory lists, local file inclusion, and remote code execution possible. Affected Versions: Media Library Assistant prior to 3.10
NOTE:
Exploit will only work if WordPress target is configured with default Imagegick installation/configuration.
QID Detection Logic (Unauthenticated): This QID sends a crafted payload to "wp-content/plugins/media-library-assistant/includes/mla-stream-image.php" endpoint as an HTTP GET request. A vulnerable target tries to connect back to the scanner on a random port.
Successful exploitation of this vulnerability may allow an unauthenticated attacker to execute arbitrary command on the target system.
- Media Library Assistant Plugin Release Notes -
wordpress.org/plugins/media-library-assistant/#developers
CVEs related to QID 731059
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Media Library Assistant Plugin Release Notes |
|