Description
WordPress Plugin WP Marketplace-Complete Shopping Cart/eCommerce Solution is prone to a vulnerability that lets attackers download arbitrary files because the application fails to sufficiently verify user-supplied input. This may allow an attacker to gain access to sensitive information, which may aid in launching further attacks. WordPress Plugin WP Marketplace-Complete Shopping Cart/eCommerce Solution version 2.4.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.4.1 or latest
References
http://security.szurek.pl/wp-marketplace-240-arbitrary-file-download.html
http://www.homelab.it/index.php/2015/03/24/wp-marketplace-rce/
http://www.exploit-db.com/exploits/36490/
http://packetstormsecurity.com/files/131018/WordPress-Marketplace-2.4.0-Arbitrary-File-Download.html
http://packetstormsecurity.com/files/131019/WordPress-Marketplace-2.4.0-Add-Administrator.html
Related Vulnerabilities
WordPress Plugin WP AmASIN-The Amazon Affiliate Shop Directory Traversal (0.9.6)
WordPress Plugin WP Customer Reviews Cross-Site Scripting (3.5.5)
SharePoint CVE-2022-41062 Vulnerability (CVE-2022-41062)
WordPress Plugin Student Result or Employee Database Security Bypass (1.6.3)
WordPress Plugin WP Maintenance Mode & Site Under Construction Security Bypass (1.8.1)