WordPress Plugin WP Super Cache - PHP Remote Code Execution
Author: anonymous
type: webapps
platform: php
port: nan
date_added: 2013-04-24
date_updated: 2015-10-19
verified: 1
codes: CVE-2013-2009;OSVDB-92743
tags: WordPress Plugin
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/59470/info
The WP Super Cache plugin for WordPress is prone to a remote PHP code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary PHP code within the context of the web server.
WP Super Cache 1.2 is vulnerable; other versions may also be affected.
<!?mfunc echo PHP_VERSION; ?><!?/mfunc?>