logo_SVG-01
✕
  • Platform
    • Rewterz XDR
    • Rewterz Defense
    • Rewterz Threat Intelligence
    • Managed Security Services
    • Managed Penetration Testing
  • Services
    • Assess
      • Compromise Assessment
      • Advanced Persistent Threats Assessment
      • Penetration Testing
      • Secure Architecture Design & Review
      • Red Team Assessment
      • Purple Team Assessment
      • Social Engineering
      • Source Code Review
    • Transform
      • SOC Consultancy
      • SOC Maturity Assessment
      • SOC Model Evaluation
      • SOC Gap Analysis
      • SIEM Gap Analysis
      • SIEM Optimization
      • SOC Content Pack
    • Train
      • Simulated Cyber Attack Exercise
      • Tabletop Exercise
      • Security Awareness and Training
    • Respond
      • Incident Analysis
      • Incident Response
  • Solutions
  • Resources
    • Blogs
    • Press Releases
    • Threat Insights
      • Threat Intelligence Reports
      • Threat Advisories
      • Monthly Threat Insights
  • Why Rewterz?
    • About Us
    • Careers
    • Contact
logo_SVG-01
  • Platform
    xdrLogo
    center_new
    Read More about XDR

    Platform

    • Rewterz XDR
    • Rewterz Defense
    • Rewterz Threat Intelligence
    Rewterz Threat Advisory – Multiple WordPress Plugin Vulnerabilities

    Managed Security Services

    • Managed Security Monitoring
    • Remote SOC
    • Onsite SOC
    • Hybrid SOC

    Managed Penetration Testing

    Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.

  • Services

    Assess

    • Compromise Assessment
    • APT Assessment
    • Penetration Testing
    • Architecture Design & Review
    • Red Team Assessment
    • Purple Team Assessment
    • Social Engineering
    • Source Code Review

    Transform

    • SOC Consultancy
    • SOC Maturity Assessment
    • SOC Model Evaluation
    • SOC Gap Analysis
    • SIEM Gap Analysis
    • SIEM Optimization
    • SOC Content Pack

    Train

    • Simulated Cyber Attack Exercise
    • Tabletop Exercise
    • Security Awareness and Training

    Respond

    • Incident Analysis
    • Incident Response
  • Solutions
  • Resources

    Resources

    • Blog
    • Press Releases
    May 30, 2023
    Rewterz
    May 30, 2023
    Rewterz Threat Alert – Threat Actors Weaponizing .ZIP Domains To Trick Victims
    Severity High Analysis Summary Recently, researchers discovered an advanced phishing method called “file archiver in the browser” that exploits .ZIP domains to deceive unsuspecting individuals. This […]
    May 28, 2023
    Rewterz
    May 28, 2023
    Rewterz Threat Update – Barracuda Issues Warning Regarding Zero-Day Exploitation to Breach Email Security Gateway (ESG) Appliances
    Severity High Analysis Summary An email protection and network security services provider has issued a warning regarding a zero-day vulnerability that has been exploited to compromise […]
    May 26, 2023
    Rewterz
    May 26, 2023
    Rewterz Threat Advisory – Multiple D-Link D-View Vulnerabilities
    Severity High Analysis Summary CVE-2023-32165 CVSS:9.8 D-Link D-View could allow a remote attacker to execute arbitrary code on the system, caused by a flaw in TftpReceiveFileHandler […]

    Threat Insights

    16
    pdf-file (1)
    Annual Threat Intelligence Report 2022
    • Threat Advisories
    • Monthly Threat Insights
    • Threat Intelligence Reports
  • Why Rewterz?

    About Us

    Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.

    Read More

    play_btn_Smallplay_btn_hover_Small
    leadership

    Our Leadership

    Our leadership team brings together years of knowledge and experience in cybersecurity to drive our company's mission and vision. Our team is passionate about delivering high-quality products and services, leading by example and assisting our clients in securing their organization’s environment.
    help

    CSR

    At Rewterz, we believe that businesses have a responsibility to impact positively and contribute to the well-being of our communities as well as the planet. That's why we are committed to operating in a socially responsible and sustainable way.

    Connect with Us

    • Contact
    • Careers
Get in Touch
logo_SVG-01
  • Platform
    xdrLogo
    center_new
    Read More about XDR

    Platform

    • Rewterz XDR
    • Rewterz Defense
    • Rewterz Threat Intelligence
    Rewterz Threat Advisory – Multiple WordPress Plugin Vulnerabilities

    Managed Security Services

    • Managed Security Monitoring
    • Remote SOC
    • Onsite SOC
    • Hybrid SOC

    Managed Penetration Testing

    Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.

  • Services

    Assess

    • Compromise Assessment
    • APT Assessment
    • Penetration Testing
    • Architecture Design & Review
    • Red Team Assessment
    • Purple Team Assessment
    • Social Engineering
    • Source Code Review

    Transform

    • SOC Consultancy
    • SOC Maturity Assessment
    • SOC Model Evaluation
    • SOC Gap Analysis
    • SIEM Gap Analysis
    • SIEM Optimization
    • SOC Content Pack

    Train

    • Simulated Cyber Attack Exercise
    • Tabletop Exercise
    • Security Awareness and Training

    Respond

    • Incident Analysis
    • Incident Response
  • Solutions
  • Resources

    Resources

    • Blog
    • Press Releases
    May 30, 2023
    Rewterz
    May 30, 2023
    Rewterz Threat Alert – Threat Actors Weaponizing .ZIP Domains To Trick Victims
    Severity High Analysis Summary Recently, researchers discovered an advanced phishing method called “file archiver in the browser” that exploits .ZIP domains to deceive unsuspecting individuals. This […]
    May 28, 2023
    Rewterz
    May 28, 2023
    Rewterz Threat Update – Barracuda Issues Warning Regarding Zero-Day Exploitation to Breach Email Security Gateway (ESG) Appliances
    Severity High Analysis Summary An email protection and network security services provider has issued a warning regarding a zero-day vulnerability that has been exploited to compromise […]
    May 26, 2023
    Rewterz
    May 26, 2023
    Rewterz Threat Advisory – Multiple D-Link D-View Vulnerabilities
    Severity High Analysis Summary CVE-2023-32165 CVSS:9.8 D-Link D-View could allow a remote attacker to execute arbitrary code on the system, caused by a flaw in TftpReceiveFileHandler […]

    Threat Insights

    16
    pdf-file (1)
    Annual Threat Intelligence Report 2022
    • Threat Advisories
    • Monthly Threat Insights
    • Threat Intelligence Reports
  • Why Rewterz?

    About Us

    Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.

    Read More

    play_btn_Smallplay_btn_hover_Small
    leadership

    Our Leadership

    Our leadership team brings together years of knowledge and experience in cybersecurity to drive our company's mission and vision. Our team is passionate about delivering high-quality products and services, leading by example and assisting our clients in securing their organization’s environment.
    help

    CSR

    At Rewterz, we believe that businesses have a responsibility to impact positively and contribute to the well-being of our communities as well as the planet. That's why we are committed to operating in a socially responsible and sustainable way.

    Connect with Us

    • Contact
    • Careers
Get in Touch
Rewterz
Rewterz Threat Alert – DarkCrystal RAT (DCRat) – Active IOCs
January 30, 2023
Rewterz
Rewterz Threat Advisory – Multiple Jenkins OpenID Plugin Vulnerabilities
January 30, 2023

Rewterz Threat Advisory – Multiple WordPress Plugin Vulnerabilities

January 30, 2023

Severity

High

Analysis Summary

CVE-2022-47615 CVSS:9.3

LearnPress plugin for WordPress could allow a remote attacker to include arbitrary files. An attacker could send a specially-crafted URL request to the inc/rest-api/v1/frontend/class-lp-rest-courses-controller.php script in the list_courses function to specify a malicious file from the local system, which could allow the attacker to execute arbitrary code on the vulnerable Web server. Note: In order to exploit this vulnerability to execute arbitrary code using a local file, the attacker would first be required to upload a malicious file or inject arbitrary commands into an existing file.

CVE-2023-22721 CVSS:6.5

Oi Yandex.Maps plugin for WordPress is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote authenticated attacker could exploit this vulnerability to inject malicious script into a Web page which would be executed in a victim’s Web browser within the security context of the hosting Web site, once the page is viewed. An attacker could use this vulnerability to steal the victim’s cookie-based authentication credentials.

CVE-2023-0385 CVSS:4.3

Custom 404 Pro plugin for WordPress is vulnerable to cross-site request forgery, caused by improper validation of user-supplied input by the custom_404_pro_admin_init function. By persuading an authenticated user to visit a malicious Web site, a remote attacker could send a malformed HTTP request to delete logs. An attacker could exploit this vulnerability to perform cross-site scripting attacks, Web cache poisoning, and other malicious activities.

CVE-2023-0293 CVSS:4.3

Mediamatic plugin for WordPress could allow a remote authenticated attacker to bypass security restrictions, caused by missing authorization. By sending a specially-crafted request, an attacker could exploit this vulnerability to change image categories.

CVE-2023-0294 CVSS:8.8

Mediamatic plugin for WordPress is vulnerable to cross-site request forgery, caused by improper validation of user-supplied input. By persuading an authenticated user to visit a malicious Web site, a remote attacker could send a malformed HTTP request to perform unauthorized actions. An attacker could exploit this vulnerability to perform cross-site scripting attacks, Web cache poisoning, and other malicious activities.

CVE-2023-0295 CVSS:5.5

Launchpad plugin for WordPress is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote authenticated attacker could exploit this vulnerability to inject malicious script into a Web page which would be executed in a victim’s Web browser within the security context of the hosting Web site, once the page is viewed. An attacker could use this vulnerability to steal the victim’s cookie-based authentication credentials.

CVE-2023-23491 CVSS:6.1

Quick Event Manager plugin for WordPress is vulnerable to cross-site scripting, caused by improper validation of user-supplied input by the qem_ajax_calendar action. A remote attacker could exploit this vulnerability using the category parameter in a specially-crafted URL to execute script in a victim’s Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim’s cookie-based authentication credentials.

CVE-2023-0448 CVSS:6.1

WP Helper Lite plugin for WordPress is vulnerable to cross-site scripting, caused by improper validation of user-supplied input by the surveySubmit_func() function in the includes/class-mbwp-helper.php script. A remote attacker could exploit this vulnerability using a specially-crafted URL to execute script in a victim’s Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim’s cookie-based authentication credentials.

CVE-2023-23488 CVSS:9.8

Paid Memberships Pro plugin for WordPress is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements to the /pmpro/v1/order REST route using the code parameter, which could allow the attacker to view, add, modify or delete information in the back-end database.

CVE-2023-23492 CVSS:6.1

Login with phone number plugin for WordPress is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements to the lwp_forgot_password action using the ID parameter, which could allow the attacker to view, add, modify or delete information in the back-end database.

CVE-2023-23490 CVSS:9.8

Survey Maker plugin for WordPress is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements to the ays_surveys_export_json action using the surveys_ids parameter, which could allow the attacker to view, add, modify or delete information in the back-end database.

CVE-2023-23489 CVSS:9.8

Easy Digital Downloads plugin for WordPress is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements to the edd_download_search action using the s parameter, which could allow the attacker to view, add, modify or delete information in the back-end database.

CVE-2023-0254 CVSS:7.2

Simple Membership WP user Import plugin for WordPress is vulnerable to SQL injection. A remote authenticated attacker could send specially-crafted SQL statements using the orderby parameter, which could allow the attacker to view, add, modify or delete information in the back-end database.

Impact

  • File Manipulation
  • Cross-Site Scripting
  • Gain Access
  • Security Bypass
  • Data Manipulation

Indicators Of Compromise

CVE

  • CVE-2022-47615
  • CVE-2023-22721
  • CVE-2023-0385
  • CVE-2023-0293
  • CVE-2023-0294
  • CVE-2023-0295
  • CVE-2023-23491
  • CVE-2023-0448
  • CVE-2023-23488
  • CVE-2023-23492
  • CVE-2023-23490
  • CVE-2023-23489
  • CVE-2023-0254

Affected Vendors

WordPress

Affected Products

  • ODude UPG plugin for WordPress 2.19
  • AYS Pro Plugins Survey Maker plugin for WordPress 3.1.3
  • WordPress Members Import plugin for WordPress 1.4.2
  • ThimPress LearnPress plugin for WordPress 4.1.7.0
  • ThimPress LearnPress plugin for WordPress 4.1.7.1
  • Oi Yandex.Maps plugin for WordPress 3.2.6
  • Oi Yandex.Maps plugin for WordPress 3.2.7
  • Custom 404 Pro Plugin for WordPress 3.2.7
  • Custom 404 Pro Plugin for WordPress 3.2.8
  • plugincraft Mediamatic plugin for WordPress 2.8.1
  • Obox Themes Launchpad plugin for WordPress 1.0.13
  • Quick Event Manager plugin for WordPress 9.7.3
  • Quick Event Manager plugin for WordPress 9.7.4
  • WP Helper Lite plugin for WordPress 4.1
  • WP Helper Lite plugin for WordPress 4.2
  • Login with phone number plugin for WordPress 1.3.6
  • Login with phone number plugin for WordPress 1.3.7
  • Survey Maker plugin for WordPress 1.5.3
  • Survey Maker plugin for WordPress 1.5.4
  • Survey Maker plugin for WordPress 1.5.5
  • Easy Digital Downloads plugin for WordPress 3.0
  • Easy Digital Downloads plugin for WordPress 2.11.6
  • Easy Digital Downloads plugin for WordPress 2.11.7
  • Easy Digital Downloads plugin for WordPress 3.0.1
  • Simple Membership WP user Import plugin for WordPress 1.6
  • Simple Membership WP user Import plugin for WordPress 1.7
  • Paid Memberships Pro plugin for WordPress 1.4.7
  • Paid Memberships Pro plugin for WordPress 1.7.14.2
  • Paid Memberships Pro plugin for WordPress 1.7.15
  • Paid Memberships Pro plugin for WordPress 1.7.15.1

Remediation

Upgrade to the latest version of plugins for WordPress, available from the WordPress Plugin Directory. 

ThimPress LearnPress 

Oi Yandex.Maps 

Custom 404 Pro 

plugincraft Mediamatic 

Obox Themes Launchpad 

Quick Event Manager 

WP Helper Lite 

Paid Memberships Pro

Login with phone number 

Survey Maker 

Easy Digital Downloads 

Simple Membership WP user Import 

Platform

  • Rewterz XDR
  • Rewterz Defense
  • Rewterz Threat Intelligence

Managed Security Services

  • Managed Security Monitoring
  • Remote SOC
  • Onsite SOC
  • Hybrid SOC

Assess

  • Compromise Assessment
  • APT Assessment
  • Penetration Testing
  • Architecture Design & Review
  • Red Team Assessment
  • Purple Team Assessment
  • Social Engineering
  • Source Code Review

Transform

  • SOC Consultancy
  • SOC Maturity Assessment
  • SOC Model Evaluation
  • SOC Gap Analysis
  • SIEM Gap Analysis
  • SIEM Optimization
  • SOC Content Pack

Train

  • Simulated Cyber Attack Exercise
  • Tabletop Exercise
  • Security Awareness and Training

Respond

  • Incident Analysis
  • Incident Response

Threat Insights

  • Threat Advisories
  • Monthly Threat Insights
  • Threat Intelligence Reports

Resources

  • Blog
  • Press Releases

Connect With Us

  • Contact
  • Careers
COPYRIGHT © REWTERZ. ALL RIGHTS RESERVED.
Get a Demo