Impact
The wpShopGermany IT-RECHT KANZLEI WordPress plugin prior to version 2.4 generates its API authentication token insecurely, deriving it from data that the attacker controls. The plugin creates the token as a side effect of a validity check, allowing an unauthenticated attacker to predict the token with low effort. Once the token is known the attacker can use the privileged API to upload or overwrite arbitrary files, effectively executing remote code. This matches the weakness categorized as CWE‑94.
Affected Systems
Any WordPress installation that has the wpShopGermany IT-RECHT KANZLEI plugin before version 2.4 is affected. No later versions are reported as vulnerable and the product is listed under the Unknown vendor category by CNA.
Risk and Exploitability
The CVSS score of 9 signals critical severity, yet the EPSS score of less than 1 % indicates that exploitation is currently unlikely. The vulnerability is not listed in the CISA KEV catalog. The likely attack path involves an unauthenticated HTTP/HTTPS request to the plugin’s API endpoint where an attacker can predict and use the token to perform file writes, leading to remote code execution.
OpenCVE Enrichment