Arbitrary File Deletion in Meta Box Plugin for WordPress
CVE-2019-14793
6.5MEDIUM
Summary
The Meta Box plugin prior to version 4.16.3 for WordPress has a vulnerability that allows authorized users to delete files through an insecure AJAX request. By exploiting the 'attachment_id' parameter in the 'wp-admin/admin-ajax.php?action=rwmb_delete_file' function, attackers can potentially remove files from the server, leading to unauthorized data loss and jeopardizing the integrity of the website. It is crucial for users to update their Meta Box plugin to the latest version to safeguard against this significant risk.
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved