WordPress에서 인증 없이 취약한 경로 순회로 원격 코드 실행 가능성 발견.
WordPress의 get_page_template() 함수에서 인증 없이 공격자가 활성 테마 디렉터리 밖의 로컬 .php 파일을 포함할 수 있는 취약점이 발견되었습니다. 이로 인해 원격 코드 실행(RCE)으로 이어질 수 있는 위험이 존재합니다. 공격자는 활성 테마의 디렉터리 구조와 서버의 파일을 활용하여 악의적인 코드를 실행할 수 있습니다.
Critical path traversal vulnerability in WordPress can lead to unauthenticated remote code execution.
A vulnerability has been discovered in WordPress’ get_page_template() function that allows unauthenticated attackers to include readable local .php files outside the active theme directory. This can potentially lead to remote code execution (RCE). Attackers may exploit the directory structure of the active theme and the server files to execute malicious code.