CVE-2022-1386
critical · 9.8A public exploit / detection template exists
Weaponised detection is publicly available, which meaningfully raises real-world risk regardless of CVSS. nuclei-templates →
The Fusion Builder WordPress plugin before 3.6.2, used in the Avada theme, does not validate a parameter in its forms which could be used to initiate arbitrary HTTP requests. The data returned is then reflected back in the application's response. This could be used to interact with hosts on the server's local network bypassing firewalls and access control measures.
9.8
CVSS
71.4%
EPSS (exploit prob.)
99th
EPSS percentile
2022-05-16
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-918
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| fusion_builder_project | fusion_builder | < 3.6.2 |
| theme-fusion | avada | < 7.6.2 |
Check a specific version with /api/v1/cve/match.
References
- https://theme-fusion.com/version-7-6-2-security-update/
- https://wpscan.com/vulnerability/bf7034ab-24c4-461f-a709-3f73988b536b
- https://www.rootshellsecurity.net/rootshell-discovered-a-critical-vulnerability-in-top-wordpress-theme/
- https://theme-fusion.com/version-7-6-2-security-update/
- https://wpscan.com/vulnerability/bf7034ab-24c4-461f-a709-3f73988b536b
- https://www.rootshellsecurity.net/rootshell-discovered-a-critical-vulnerability-in-top-wordpress-theme/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2022-1386