AI Power: Complete AI Pack WordPress Plugin Missing Authorization Vulnerability Allowing Arbitrary Shortcode Execution
Vulnerability
A vulnerability exists in the AI Power: Complete AI Pack plugin for WordPress, in all versions through 1.8.96. The issue arises from a missing capability check in the 'wpaicg_save_image_media' function, which allows authenticated attackers with Subscriber-level access and above to upload image files. Exploitation can be achieved by embedding shortcode attributes in the 'image_alt' value, which will execute when a POST request is sent to the attachment page.
Impact
Exploitation of this vulnerability allows for unauthorized image uploads and the execution of embedded shortcodes, potentially leading to arbitrary code execution or other malicious actions, depending on the nature of the executed shortcode.
Remediation
Users are advised to update the AI Power: Complete AI Pack plugin to version 1.8.97 or a newer patched version.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
