WordPress용 File Manager(wp-file-manager) 플러그인 6.9 이전 버전은 안전하지 않은 elFinder 커넥터 예제 파일의 확장자를 .php로 변경하기 때문에 원격 공격자가 임의의 PHP 코드를 업로드하고 실행할 수 있습니다. 예를 들어 공격자는 elFinder upload(또는 mkfile 및 put) 명령을 실행하여 wp-content/plugins/wp-file-manager/lib/files/ 디렉터리에 PHP 코드를 작성할 수 있습니다. 이 취약점은 2020년 8월과 9월에 실제로 악용되었습니다.
WordPress용 File Manager(wp-file-manager) 플러그인 6.9 이전 버전은 안전하지 않은 elFinder 커넥터 예제 파일의 확장자를 .php로 변경하기 때문에 원격 공격자가 임의의 PHP 코드를 업로드하고 실행할 수 있습니다. 예를 들어 공격자는 elFinder upload(또는 mkfile 및 put) 명령을 실행하여 wp-content/plugins/wp-file-manager/lib/files/ 디렉터리에 PHP 코드를 작성할 수 있습니다. 이 취약점은 2020년 8월과 9월에 실제로 악용되었습니다.
한국어 설명은 영문 원문을 기준으로 제공됩니다. 제품명·버전·보안 식별자는 아래 원문과 함께 확인할 수 있습니다.
영문 원문 보기
The File Manager (wp-file-manager) plugin before 6.9 for WordPress allows remote attackers to upload and execute arbitrary PHP code because it renames an unsafe example elFinder connector file to have the .php extension. This, for example, allows attackers to run the elFinder upload (or mkfile and put) command to write PHP code into the wp-content/plugins/wp-file-manager/lib/files/ directory. This was exploited in the wild in August and September 2020.