HIGH

CVE-2023-0159

CVSS v3

7.5

HIGH

EPSS Score

92.9%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

The Extensive VC Addons for WPBakery page builder WordPress plugin before 1.9.1 does not validate a parameter passed to the php extract function when loading templates, allowing an unauthenticated attacker to override the template path to read arbitrary files from the hosts file system. This may be escalated to RCE using PHP filter chains.

Technical details

Published
2/13/2023
Exploit-DB
EDB-52085

Frequently asked questions

What is CVE-2023-0159?

The Extensive VC Addons for WPBakery page builder WordPress plugin before 1.9.1 does not validate a parameter passed to the php extract function when loading templates, allowing an unauthenticated attacker to override the template path to read arbitrary files from the hosts file system. This may be escalated to RCE using PHP filter chains.

Is CVE-2023-0159 actively exploited?

Active exploitation of CVE-2023-0159 has not been confirmed. The EPSS score is 92.9%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2023-0159?

CVE-2023-0159 has a CVSS v3 base score of 7.5 (HIGH severity).

Is CVE-2023-0159 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.