CVE-2021-24867
critical · 9.8Numerous Plugins and Themes from the AccessPress Themes (aka Access Keys) vendor are backdoored due to their website being compromised. Only plugins and themes downloaded via the vendor website are affected, and those hosted on wordpress.org are not. However, all of them were updated or removed to avoid any confusion
9.8
CVSS
18.0%
EPSS (exploit prob.)
97th
EPSS percentile
2022-02-21
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-912
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| accesspressthemes | accessbuddy | 1.0.0 |
| accesspressthemes | accesspress_anonymous_post | 2.8.0 |
| accesspressthemes | accesspress_basic | 3.2.1 |
| accesspressthemes | accesspress_custom_css | 2.0.1 |
| accesspressthemes | accesspress_custom_post_type | 1.0.8 |
| accesspressthemes | accesspress_ifeeds | 4.0.3 |
| accesspressthemes | accesspress_lite | 2.92 |
| accesspressthemes | accesspress_mag | 2.6.5 |
| accesspressthemes | accesspress_parallax | 4.5 |
| accesspressthemes | accesspress_ray | 1.19.5 |
| accesspressthemes | accesspress_root | 2.5 |
| accesspressthemes | accesspress_social_counter | 1.9.1 |
| accesspressthemes | accesspress_social_icons | 1.8.2 |
| accesspressthemes | accesspress_social_login_lite | 3.4.7 |
| accesspressthemes | accesspress_social_share | 4.5.5 |
| accesspressthemes | accesspress_staple | 1.9.1 |
| accesspressthemes | accesspress_store | 2.4.9 |
| accesspressthemes | agency_lite | 1.1.6 |
| accesspressthemes | ap_companion | < 1.0.7 |
| accesspressthemes | ap_contact_form | 1.0.6 |
| accesspressthemes | ap_custom_testimonial | 1.4.6 |
| accesspressthemes | ap_mega_menu | 3.0.5 |
| accesspressthemes | ap_pricing_tables_lite | 1.1.2 |
| accesspressthemes | apex_notification_bar_lite | 2.0.4 |
| accesspressthemes | aplite | 1.0.6 |
| accesspressthemes | badge_designer_lite_for_woocommerce | 1.1.0 |
| accesspressthemes | bingle | 1.0.4 |
| accesspressthemes | bloger | 1.2.6 |
| accesspressthemes | comments_disable_-_accesspress | 1.0.7 |
| accesspressthemes | construction_lite | 1.2.5 |
| accesspressthemes | doko | 1.0.27 |
| accesspressthemes | easy_side_tab | 1.0.7 |
| accesspressthemes | enlighten | 1.3.5 |
| accesspressthemes | everest_admin_theme_lite | 1.0.7 |
| accesspressthemes | everest_coming_soon_lite | 1.1.0 |
| accesspressthemes | everest_comment_rating_lite | 2.0.4 |
| accesspressthemes | everest_counter_lite | 2.0.7 |
| accesspressthemes | everest_faq_manager_lite | 1.0.8 |
| accesspressthemes | everest_gallery_lite | 1.0.8 |
| accesspressthemes | everest_gplaces_business_reviews | 1.0.9 |
Check a specific version with /api/v1/cve/match.
References
- https://jetpack.com/2022/01/18/backdoor-found-in-themes-and-plugins-from-accesspress-themes/
- https://wpscan.com/vulnerability/9c76bada-fa32-4c2f-9855-d0efd1e63eff
- https://jetpack.com/2022/01/18/backdoor-found-in-themes-and-plugins-from-accesspress-themes/
- https://wpscan.com/vulnerability/9c76bada-fa32-4c2f-9855-d0efd1e63eff
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2021-24867