The Th Shop Mania theme for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capability check on the th_shop_mania_install_and_activate_callback() function in all versions up to, and including, 1.4.9. This makes it possible for authenticated attackers, with Subscriber-level access and above, to install arbitrary plugins which can be leveraged to exploit other vulnerabilities and achieve remote code execution and privilege escalation.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 12 Nov 2024 19:15:00 +0000

Type Values Removed Values Added
First Time appeared Themehunk
Themehunk th Shop Mania
CPEs cpe:2.3:a:themehunk:th_shop_mania:*:*:*:*:*:*:*:*
Vendors & Products Themehunk
Themehunk th Shop Mania
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Sat, 09 Nov 2024 03:30:00 +0000

Type Values Removed Values Added
Description The Th Shop Mania theme for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capability check on the th_shop_mania_install_and_activate_callback() function in all versions up to, and including, 1.4.9. This makes it possible for authenticated attackers, with Subscriber-level access and above, to install arbitrary plugins which can be leveraged to exploit other vulnerabilities and achieve remote code execution and privilege escalation.
Title Th Shop Mania <= 1.4.9 - Authenticated (Subscriber+) Arbitrary Plugin Installation/Activation
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published:

Updated: 2024-11-12T18:43:10.958Z

Reserved: 2024-11-01T11:08:04.631Z

Link: CVE-2024-10674

cve-icon Vulnrichment

Updated: 2024-11-12T18:43:04.650Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-11-09T04:15:04.677

Modified: 2024-11-12T13:56:24.513

Link: CVE-2024-10674

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.