CVE-2023-2688: WordPress File Upload / WordPress File Upload Pro <= 4.19.1 - Authenticated (Administrator+) Path Traversal
The WordPress File Upload and WordPress File Upload Pro plugins for WordPress are vulnerable to Path Traversal in versions up to, and including, 4.19.1 via the vulnerable parameter wfunewpath. This allows administrator-level attackers to move files uploaded with the plugin (located in wp-content/uploads by default) outside of the web root.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-2688?
CVE-2023-2688 is a vulnerability in the WordPress File Upload and WordPress File Upload Pro plugins for WordPress.
What is the severity of CVE-2023-2688?
The severity of CVE-2023-2688 is medium, with a severity value of 4.9.
How are the WordPress File Upload and WordPress File Upload Pro plugins affected by CVE-2023-2688?
The WordPress File Upload and WordPress File Upload Pro plugins are vulnerable to path traversal in versions up to, and including, 4.19.1.
How can an attacker exploit CVE-2023-2688?
An attacker with administrator-level access can exploit CVE-2023-2688 by using the vulnerable parameter wfu_newpath to perform path traversal and manipulate files uploaded with the plugin.
Are there any references for CVE-2023-2688?
Yes, you can refer to the following links for more information: [Link 1](https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&new=2915978%40wp-file-upload%2Ftrunk&old=2909107%40wp-file-upload%2Ftrunk&sfp_email=&sfph_mail=#file2), [Link 2](https://www.wordfence.com/threat-intel/vulnerabilities/id/abd6eeac-0a7e-4762-809f-593cd85f303d?source=cve)