๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ
๋ณด์•ˆ/์ทจ์•ฝ์  ๋ถ„์„

CVE-2021-25076 ์ทจ์•ฝ์  ์‹ค์Šต

by - ์˜คํŠธ - 2022. 2. 24.

์ทจ์•ฝ์  : https://nvd.nist.gov/vuln/detail/CVE-2021-25076

 

NVD - CVE-2021-25076

CVE-2021-25076 Detail Undergoing Reanalysis This vulnerability has been modified and is currently undergoing reanalysis. Please check back soon to view the updated vulnerability summary. Current Description The WP User Frontend WordPress plugin before 3.5.

nvd.nist.gov

PoC ์ฝ”๋“œ : https://www.exploit-db.com/exploits/50772

 

WordPress Plugin WP User Frontend 3.5.25 - SQLi (Authenticated)

WordPress Plugin WP User Frontend 3.5.25 - SQLi (Authenticated) EDB-ID: 50772 CVE: 2021-25076 Date: 2022-02-21

www.exploit-db.com

* poc ์ฝ”๋“œ๋ฅผ ์ด์šฉํ•ด ์ทจ์•ฝ์  ๊ณต๊ฒฉ์„ ํ•ด๋ณธ ์ ์ด ์—†์–ด ๋ธ”๋กœ๊ทธ์— ๊ฐ„๋‹จํ•˜๊ฒŒ ์ž‘์„ฑํ•ด๋ณด์•˜๋‹ค.

 

- 3.5.26 ์ด์ „ WP User Frontend WordPress ํ”Œ๋Ÿฌ๊ทธ์ธ์€ ๊ตฌ๋…์ž ๋Œ€์‹œ๋ณด๋“œ์˜ SQL ๋ฌธ์— ์‚ฌ์šฉํ•˜๊ธฐ ์ „์— ์ƒํƒœ ๋งค๊ฐœ ๋ณ€์ˆ˜๋ฅผ ๊ฒ€์ฆํ•˜๊ณ  ์ด์Šค์ผ€์ดํ”„ํ•˜์ง€ ์•Š์•„ SQL ์ฃผ์ž…์ด ๋ฐœ์ƒ

- ์‚ญ์ œ ๋ฐ ์ด์Šค์ผ€์ดํ”„ ๋ถ€์กฑ์œผ๋กœ ์ธํ•ด ์‚ฌ์ดํŠธ ๊ฐ„ ์Šคํฌ๋ฆฝํŒ…์ด ๋ฐ˜์˜๋  ์ˆ˜ ์žˆ์Œ

 

ํ™˜๊ฒฝ ๊ตฌ์„ฑ

๊ณต๊ฒฉ์ž : Kali 20.04

ํ”ผํ•ด์ž : Ubuntu 18.04 + WordPress(WP User Frontend 3.5.25) ์„ค์น˜

 

์‹คํ–‰ ํ™”๋ฉด

- Ubuntu ์„ค์น˜ ์™„๋ฃŒ ํ™”๋ฉด

 

- Kali python ์ฝ”๋“œ ์‹คํ–‰ ํ™”๋ฉด

(์ž์‹ ์˜ python ๋ฒ„์ „์ด 2.xx๋Œ€๋ผ๋„ ๋ช…๋ น์–ด๋Š” python3 ์œผ๋กœ ํ•ด์ฃผ์–ด์•ผ ์˜ค๋ฅ˜๊ฐ€ ๋‚˜์ง€ ์•Š๋Š”๋‹ค)

 

- Kali python ์ฝ”๋“œ ์„ฑ๊ณต ํ™”๋ฉด