CVE-2022-1386

Scores

EPSS

0.933High93.3%
0%20%40%60%80%100%

Percentile: 93.3%

CVSS

9.8Critical3.x
0246810

CVSS Score: 9.8/10

All CVSS Scores

CVSS 3.x
9.8

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS 2.0
7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Description

The Fusion Builder WordPress plugin before 3.6.2, used in the Avada theme, does not validate a parameter in its forms which could be used to initiate arbitrary HTTP requests. The data returned is then reflected back in the application’s response. This could be used to interact with hosts on the server’s local network bypassing firewalls and access control measures.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-918

Exploits

Exploit ID: CVE-2022-1386

Source: github-poc

URL: https://github.com/cur1y-dev/CVE-2022-1386

Vulnerable Software (2)

Type: Configuration

Vendor: fusion_builder_project

Product: fusion_builder

Operating System: * * *

Trait:
{
  "cpe_match": [
    {
      "cpe23uri": "cpe:2.3:a:fusion_builder_project:fusion_builder:*:*:*:*:*:wordpress:*:*",
      "versionEndExcluding": "3.6.2",
      "vulnerable": true
    },
    {
      ...

Source: nvd

Type: Configuration

Vendor: theme-fusion

Product: avada

Operating System: * * *

Trait:
{
  "cpe_match": [
    {
      "cpe23uri": "cpe:2.3:a:fusion_builder_project:fusion_builder:*:*:*:*:*:wordpress:*:*",
      "versionEndExcluding": "3.6.2",
      "vulnerable": true
    },
    {
      ...

Source: nvd