Description
The NewsBlogger theme for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the newsblogger_install_and_activate_plugin() function in all versions up to, and including, 0.2.5.1. This makes it possible for authenticated attackers, with subscriber-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.
Problem types
Product status
Any version
Timeline
| 2025-04-30: | Disclosed |
Credits
Alexander Chikaylo
References
www.wordfence.com/...-d57b-495e-a504-a0c1ba691637?source=cve
themes.trac.wordpress.org/...r/newsblogger/0.2/functions.php
themes.trac.wordpress.org/...r/newsblogger/0.2/functions.php
themes.trac.wordpress.org/...r/newsblogger/0.2/functions.php
themes.trac.wordpress.org/...s.php?annotate=blame&rev=269615