Path traversal in Site Editor - CVE-2018-7422
Published: August 6, 2018 / Updated: December 6, 2022
Vulnerability details
The vulnerability allows a remote attacker to obtain potentially sensitive information.
The vulnerability exists due to insufficient sanitization of user-supplied input submitted to the ajax_path parameter that is processed by the editor/extensions/pagebuilder/includes/ajax_shortcode_pattern.php code. A remote attacker can send a specially crafted request that submits malicious input, conduct directory traversal attack access arbitrary files on the system.
Affected software
How to mitigate CVE-2018-7422
Links to Public Exploits and PoC-codes
- Exploit #8647 - CVE-2018-7422 (Exploit for CVE-2018-7422: Local File Inclusion in WordPress Plugin Site Editor 1.1.1) (December 6, 2022)
- Exploit #6242 - Wordpress Plugin Site Editor 1.1.1 - Local File Inclusion (June 17, 2021)
- Exploit #202 - CVE-2018-7422 (Wordpress plugin Site-Editor v1.1.1 LFI exploit) (March 18, 2020)