WordPress Infinite Scroll – Ajax Load More <= 5.5.3 - Authenticated (Admin+) Arbitrary File Read
Vulnerability Description
The WordPress Infinite Scroll – Ajax Load More plugin for Wordpress is vulnerable to arbitrary file reading in versions up to, and including, 5.5.3 due to insufficient file path validation on the alm_repeaters_export() function. This makes it possible for authenticated attackers, with administrative privileges, to download arbitrary files hosted on the server that may contain sensitive content, such as the wp-config.php file.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-2943
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Muhammad Zeeshan
References
- https://www.wordfence.com/threat-intel/vulnerabilities/id/6d643d07-7533-430b-a1d8-8e66a2a2c5e6?source=cve
- https://plugins.svn.wordpress.org/ajax-load-more/tags/5.5.4/README.txt
- https://gist.github.com/Xib3rR4dAr/f9a4b4838154854ec6cde7d5deb76bf9
- https://www.wordfence.com/vulnerability-advisories/#CVE-2022-2943
More from dcooney
View All →Affected Vendor
dcooney
View all reports →