Bug 2066189 (CVE-2022-25602) - CVE-2022-25602 wordpress: Nonce token leak vulnerability leading to arbitrary file upload, theme deletion, plugin settings change
Summary: CVE-2022-25602 wordpress: Nonce token leak vulnerability leading to arbitrary...
Keywords:
Status: CLOSED NOTABUG
Alias: CVE-2022-25602
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2087643 2087644
Blocks:
TreeView+ depends on / blocked
 
Reported: 2022-03-21 07:40 UTC by Rohit Keshri
Modified: 2022-05-18 06:57 UTC (History)
2 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2022-05-18 06:57:55 UTC
Embargoed:


Attachments (Terms of Use)

Description Rohit Keshri 2022-03-21 07:40:33 UTC
Nonce token leak vulnerability leading to arbitrary file upload, theme deletion, plugin settings change discovered in Responsive Menu WordPress plugin (versions <= 4.1.7).

https://patchstack.com/database/vulnerability/responsive-menu/wordpress-responsive-menu-plugin-4-1-7-nonce-token-leak-leading-to-arbitrary-file-upload-theme-deletion-plugin-settings-change-vulnerability
https://wordpress.org/plugins/responsive-menu/#developers

Comment 2 Rohit Keshri 2022-05-18 06:56:55 UTC
Created wordpress tracking bugs for this issue:

Affects: epel-all [bug 2087643]
Affects: fedora-all [bug 2087644]


Note You need to log in before you can comment on or make changes to this bug.