CVE-2019-10869: Path Traversal
Path Traversal and Unrestricted File Upload exists in the Ninja Forms plugin before 3.0.23 for WordPress (when the Uploads add-on is activated). This allows an attacker to traverse the file system to access files and execute code via the includes/fields/upload.php (aka upload/submit page) name and tmpname parameters.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Ninja Forms pluginto a version that resolves this vulnerability.Fixed in 3.0.23 - Configuration
If you cannot upgrade immediately to Ninja Forms 3.0.23, deactivate the Ninja Forms Uploads add-on to prevent exploitation of the path traversal/unrestricted file upload vulnerability.
Ninja Forms (WordPress) Uploads add-on uploads_addon_activation = disable
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-10869.
What is the severity of CVE-2019-10869?
The severity of CVE-2019-10869 is high.
Which software is affected by CVE-2019-10869?
The Ninja Forms plugin before version 3.0.23 for WordPress with the Uploads add-on activated is affected by CVE-2019-10869.
What is the impact of CVE-2019-10869?
CVE-2019-10869 allows an attacker to traverse the file system, access files, and execute code.
How can I fix the vulnerability CVE-2019-10869?
To fix CVE-2019-10869, update the Ninja Forms plugin to version 3.0.23 or later.