The VikRentCar Car Rental Management System plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.4.2. This is due to missing or incorrect nonce validation on the 'save' function. This makes it possible for unauthenticated attackers to change plugin access privileges via a forged request granted they can trick a site administrator into performing an action such as clicking on a link. Successful exploitation allows attackers with subscriber-level privileges and above to upload arbitrary files on the affected site's server which may make remote code execution possible.
History

Tue, 11 Mar 2025 22:00:00 +0000

Type Values Removed Values Added
First Time appeared E4jconnect
E4jconnect vikrentcar
CPEs cpe:2.3:a:e4jconnect:vikrentcar:*:*:*:*:*:wordpress:*:*
Vendors & Products E4jconnect
E4jconnect vikrentcar

Tue, 11 Mar 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Sat, 08 Mar 2025 11:30:00 +0000

Type Values Removed Values Added
Description The VikRentCar Car Rental Management System plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.4.2. This is due to missing or incorrect nonce validation on the 'save' function. This makes it possible for unauthenticated attackers to change plugin access privileges via a forged request granted they can trick a site administrator into performing an action such as clicking on a link. Successful exploitation allows attackers with subscriber-level privileges and above to upload arbitrary files on the affected site's server which may make remote code execution possible.
Title VikRentCar Car Rental Management System <= 1.4.2 - Cross-Site Request Forgery to Authenticated (Subscriber+) Arbitrary File Upload
Weaknesses CWE-352
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published:

Updated: 2025-03-11T16:07:21.672Z

Reserved: 2024-11-22T19:29:47.397Z

Link: CVE-2024-11640

cve-icon Vulnrichment

Updated: 2025-03-10T16:59:51.617Z

cve-icon NVD

Status : Analyzed

Published: 2025-03-08T12:15:34.510

Modified: 2025-03-11T21:35:34.517

Link: CVE-2024-11640

cve-icon Redhat

No data.