← back
CVE-2022-1390observed exploitationCWE-22

Admin Word Count Column <= 2.2 - Unauthenticated Arbitrary File Read

45Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 22%
from disclosure to weapon
Published on NVDApr 25
VulnCheck+581d
exploitation probability
22%top 3% of all CVEs
observed exploitation
yesVulnCheck
The Admin Word Count Column WordPress plugin through 2.2 does not validate the path parameter given to readfile(), which could allow unauthenticated attackers to read arbitrary files on server running old version of PHP susceptible to the null byte technique. This could also lead to RCE by using a Phar Deserialization technique