9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
The ThemeREX Addons plugin before 2020-03-09 for WordPress lacks access control on the /trx_addons/v2/get/sc_layout REST API endpoint, allowing for PHP functions to be executed by any users, because includes/plugin.rest-api.php calls trx_addons_rest_get_sc_layout with an unsafe sc parameter.
Affected (103)
Products: Themerex: Ozeum Museum, Addons, Chit Club Board Games, Yottis Simple Portfolio, Helion Agency &portfolio, Amuli, Nelson Barbershop + Tattoo Salon, Hallelujah Church, Right Way, Prider Pride Fest, Mystik Esoterics, Skydiving And Flying Company, Dronex Aerial Photography Services, Samadhi Buddhist, Tantum Rent A Car, Rent A Bike, Rent A Scooter Multiskin Theme, Scientia Public Library, Blabber, Impacto Patronus Multi Landing, Rare Radio, Piqes Creative Startup & Agency Wordpress Theme, Kratz Digital Agency, Pixefy, Netmix Broadband & Telecom, Kids Care, Briny Diving Wordpress Theme, Tornados, Gridiron, Yungen Digital/marketing Agency, Fc United Football, Bugster Pests Control, Rumble Single Fighter Boxer, News, Gym, Store, Tacticool Shooting Range Wordpress Theme, Coinpress Cryptocurrency Magazine & Blog Wordpress Theme, Vihara Ashram, Buddhist, Katelyn Gutenberg Wordpress Blog Theme, Heaven 11 Multiskin Property Theme, Especio Food Gutenberg Theme, Partiso Electioncampaign, Kargo Freight Transport, Maxify Startup Blog, Lingvico Language Learning School, Aldo Gutenberg Wordpress Blog Theme, Vixus Startup / Mobile Application, Wellspring Water Filter Systems, Nazareth Church, Tediss Soft Play Area, Cafe & Child Care Center, Yolox Startup Magazine & Blog Wordpress Theme, Meals And Wheels Food Truck, Rosalinda Vegetarian & Health Coach, Vapester, Modern Housewife Housewife And Family Blog, Chainpress, Justitia Multiskin Lawyer Theme, Hobo Digital Nomad Blog, Rhodos Creative Corporate Wordpress Theme, Buzz Stone Magazine & Blog, Corredo Sport Event, Savejulia Personal Fundraising Campaign, Bonkozoo Zoo, Renewal Plastic Surgeon Clinic, Gloss Blog, Plumbing Repair, Building & Construction Wordpress Theme, Topper Theme And Skins
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.2 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.70.3 | |
| Before 1.0.1 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.67 | |
| Before 1.0.1 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.3 |
Configuration E
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.1.2001 |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.1 |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.65 | |
| Before 1.0.2 |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.1 |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.62.3 | |
| Before 1.0.1 |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.62.1 | |
| Before 1.1.2001 |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.1 |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.61.3 | |
| Before 1.0.2 |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.1 |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.61.1 | |
| Before 1.1.2001 |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.61 | |
| Before 1.0.1 |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.60 | |
| Before 1.0.1 |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.59.3 | |
| Before 1.0.2 |
Configuration U
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.59.1.1 | |
| Before 1.0.2 |
Configuration W
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.2.2000 |
Configuration Z
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.1 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.57.3 | |
| Before 1.0.7 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.57.2 | |
| Before 1.0.2 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.57 | |
| Before 1.0.4 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.56 | |
| Before 1.0.1 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.55.4 | |
| Before 1.0.2 |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.55.7 | |
| Before 1.1.2001 |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.55.3 | |
| Before 1.0.4 |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.55.1 | |
| Before 1.0.2 |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.54 | |
| Before 1.0.1 |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.2002 |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.53.3 | |
| Before 1.1.2004 |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.4 |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.53.1 | |
| Before 1.0.3 |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.53.2 | |
| Before 1.0.2 |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.52.2 | |
| Before 1.0.4 |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.3 |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.52.1 | |
| Before 1.0.5 |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.53 | |
| Before 1.0.3 |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.3 |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.51.3 | |
| Before 1.0.3 |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.3 |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.2 |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.3 |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.51.1 | |
| Before 1.0.3 |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.3 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.50.1 | |
| Before 1.3.2001 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.50 | |
| Before 1.0.3 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.0.49.10 | |
| Before 1.1.2003 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.49.8 | |
| Before 1.0.3 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.49.6 | |
| Before 1.0.3 |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.49.6.2 | |
| Before 1.0.3 |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.49.5 | |
| Before 1.0.1 |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.58.2 | |
| Before 3.0.1 |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.6.61.2 | |
| All versions |
Related CWEs
CWE-862
Missing Authorization
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
CWE-94
Improper Control of Generation of Code ('Code Injection')
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
References (2)
Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Timeline
No history available yet.