CVE-2024-5852: WordPress File Upload <= 4.24.7 - Authenticated (Contributor+) Directory Traversal
The WordPress File Upload plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 4.24.7 via the 'uploadpath' parameter of the wordpressfileupload shortcode. This makes it possible for authenticated attackers, with Contributor-level access and above, to upload limited files to arbitrary locations on the web server.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress File Upload (wordpress.org plugin)to a version that resolves this vulnerability.Fixed in 4.24.7
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5852?
CVE-2024-5852 is rated as a high severity vulnerability due to its potential for directory traversal exploits.
How do I fix CVE-2024-5852?
To resolve CVE-2024-5852, update the WordPress File Upload plugin to version 4.24.8 or later.
Who is impacted by CVE-2024-5852?
Authenticated users with Contributor-level access in WordPress are impacted by CVE-2024-5852.
What is the attack vector for CVE-2024-5852?
The attack vector for CVE-2024-5852 is through the 'uploadpath' parameter of the wordpress_file_upload shortcode.
What versions of the plugin are vulnerable to CVE-2024-5852?
All versions of the WordPress File Upload plugin up to and including 4.24.7 are vulnerable to CVE-2024-5852.