Information Disclosure and Data Modification in Article2PDF Plugin by WordPress
CVE-2019-1010257
Key Information:
- Vendor
- Wordpress
- Vendor
- CVE Published:
- 27 March 2019
Summary
The Article2PDF WordPress plugin is susceptible to an information disclosure and data modification vulnerability via the article2pdf_getfile.php file. By constructing a specific URL, attackers can override the path to PDF files, potentially allowing unauthorized access to PDF documents that the web server can read. Furthermore, if permissible by the server's configuration, downloaded files may be deleted post-retrieval. Additionally, on PHP versions preceding 5.3, a null termination exploit could permit reading of any file by manipulating the string prior to the extension.
Affected Version(s)
article2pdf Wordpress plug-in 0.24
article2pdf Wordpress plug-in 0.25
article2pdf Wordpress plug-in 0.26
References
EPSS Score
5% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved