Security Advisory

CVE-2021-24312

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-01 11:33:30
Last updated 2024-08-03 19:28:23
Assigner WPScan
State PUBLISHED

Description

The parameters $cache_path, $wp_cache_debug_ip, $wp_super_cache_front_page_text, $cache_scheduled_time, $cached_direct_pages used in the settings of WP Super Cache WordPress plugin before 1.7.3 result in RCE because they allow input of $ and n. This is due to an incomplete fix of CVE-2021-24209.