S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Oct 8, 2024

CVE-2023-0159 Scanner

CVE-2023-0159 Scanner - Remote Code Execution (RCE) vulnerability in Extensive VC Addons for WPBakery page builder

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
3.3k
Times Used
continuous scan runs
5.9k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
7.5
CVSS
Description

The Extensive VC Addons for WPBakery page builder WordPress plugin before 1.9.1 does not validate a parameter passed to the php extract function when loading templates, allowing an unauthenticated attacker to override the template path to read arbitrary files from the hosts file system. This may be escalated to RCE using PHP filter chains.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
Extensive VC Addons for WPBakery page builder
AFFECTED< 1.9.1SAFE ✓≥ 1.9.1
Updated Sep 14, 2026View on NVD →
Detail

The Extensive VC Addons for WPBakery page builder is a plugin designed for WordPress environments. It extends the functionality of the popular WPBakery page builder, adding additional design elements and templates to enhance web development. It is used by developers and website managers to streamline the creation of visually complex and dynamic WordPress websites. The plugin simplifies the design process, allowing users to implement advanced layouts without extensive coding knowledge. While aimed at professional WordPress users, it is accessible to beginners due to its user-friendly interface. Nonetheless, its integration into various aspects of a website makes maintaining its security vital for site integrity.

The vulnerability identified is a Remote Code Execution (RCE), a critical security flaw that can allow attackers to run arbitrary code on a targeted server. RCE vulnerabilities are dangerous as they might be exploited to perform any actions within the permissions of the compromised application. This specific vulnerability arises from improper validation of parameters passed to certain functions within the plugin. As a result, malicious actors can manipulate the input parameters. If successfully exploited, it allows the execution of unwanted actions on the server hosted by the vulnerable software.

Technically, the vulnerability occurs due to inadequate input validation on the plugin's pages. Specifically, the plugin does not adequately validate a parameter that is eventually passed to a PHP function, permitting manipulation of crucial path values. By passing crafted requests, attackers can leverage PHP function behaviors to load sensitive files or inject malicious payloads. The execution of these payloads can be quite damaging as it may involve data exfiltration or further server compromises. Exploiting such a vulnerability usually involves understanding the application's logic and crafting precise inputs.

If exploited, this vulnerability can enable unauthenticated attackers to run arbitrary code, effectively taking control over the website. The ramifications are significant—the attacker can alter site content, steal sensitive data, or use the server as part of a botnet. This could lead to financial loss, reputation damage, or legal issues for the website owner. For sites storing confidential user information, the vulnerability poses a risk of data breaches.

REFERENCES

Solution Advice
  • Update the Extensive VC Addons to version 1.9.1 or later to patch the RCE vulnerability.
  • Regularly review and audit installed plugins for updates and potential security advisories.
  • Utilize intrusion detection systems to flag abnormal requests or signs of exploitation.
  • Implement web application firewalls to monitor and restrict suspicious plugin activity.
  • Educate website administrators on maintaining a secure plugin ecosystem by applying least privilege principles.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2023-0159 Scanner - Remote Code Execution (RCE) vulnerability in Extensive VC Addons for WPBakery Page Builder | S4E