CVE-2020-10257

The ThemeREX Addons plugin before 2020-03-09 for WordPress lacks access control on the /trx_addons/v2/get/sc_layout REST API endpoint, allowing for PHP functions to be executed by any users, because includes/plugin.rest-api.php calls trx_addons_rest_get_sc_layout with an unsafe sc parameter.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AC:L/AV:N/A:H/C:H/I:H/PR:N/S:U/UI:N
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 79%
VendorProductVersion
themerexaddons
1.70.3
themerexozeum-museum
𝑥
< 1.0.2
themerexaddons
1.70.3
themerexchit_club-board_games
𝑥
< 1.0.1
themerexaddons
1.6.67
themerexyottis-simple_portfolio
𝑥
< 1.0.1
themerexaddons
1.6.66
themerexhelion-agency_\&portfolio
𝑥
< 1.0.3
themerexaddons
1.6.66
themerexamuli
𝑥
< 1.0.2
themerexaddons
1.6.65
themerexnelson-barbershop_\+_tattoo_salon
𝑥
< 1.0.1.2001
themerexaddons
1.6.65
themerexhallelujah-church
𝑥
< 1.0.1
themerexaddons
1.6.65
themerexright_way
𝑥
< 4.0.1
themerexaddons
1.6.65
themerexprider-pride_fest
𝑥
< 1.0.2
themerexaddons
1.6.62.3
themerexmystik-esoterics
𝑥
< 1.0.1
themerexaddons
1.6.62.3
themerexskydiving_and_flying_company
𝑥
< 1.0.1
themerexaddons
1.6.62.1
themerexdronex-aerial_photography_services
𝑥
< 1.1.2001
themerexaddons
1.6.61.2
themerexsamadhi-buddhist
𝑥
< 1.0.1
themerexaddons
1.6.61.3
themerextantum-rent_a_car\,_rent_a_bike\,_rent_a_scooter_multiskin_theme
𝑥
< 1.0.2
themerexaddons
1.6.61.2
themerexscientia-public_library
𝑥
< 1.0.1
themerexaddons
1.6.61.2
themerexblabber
𝑥
< 1.5.2009
themerexaddons
1.6.61.1
themereximpacto_patronus_multi-landing
𝑥
< 1.1.2001
themerexaddons
1.6.61
themerexrare_radio
𝑥
< 1.0.1
themerexaddons
1.6.60
themerexpiqes-creative_startup_\&_agency_wordpress_theme
𝑥
< 1.0.1
themerexaddons
1.6.59.3
themerexkratz-digital_agency
𝑥
< 1.0.2
themerexaddons
1.6.59.2
themerexpixefy
𝑥
< 1.0.1
themerexaddons
1.6.59.1.1
themerexnetmix-broadband_\&_telecom
𝑥
< 1.0.2
themerexaddons
1.6.59
themerexkids_care
𝑥
< 3.0.5
themerexaddons
1.6.58.2
themerexbriny-diving_wordpress_theme
𝑥
< 1.2.2000
themerexaddons
1.6.57.3
themerextornados
𝑥
< 1.1.2001
themerexaddons
1.6.57.4
themerexgridiron
𝑥
< 1.0.2
themerexaddons
1.6.57.2
themerexyungen-digital\/marketing_agency
𝑥
< 1.0.1
themerexaddons
1.6.57.3
themerexfc_united-football
𝑥
< 1.0.7
themerexaddons
1.6.57.2
themerexbugster-pests_control
𝑥
< 1.0.2
themerexaddons
1.6.57
themerexrumble-single_fighter_boxer\,_news\,_gym\,_store
𝑥
< 1.0.4
themerexaddons
1.6.56
themerextacticool-shooting_range_wordpress_theme
𝑥
< 1.0.1
themerexaddons
1.6.55.4
themerexcoinpress-cryptocurrency_magazine_\&_blog_wordpress_theme
𝑥
< 1.0.2
themerexaddons
1.6.55.7
themerexvihara-ashram\,_buddhist
𝑥
< 1.1.2001
themerexaddons
1.6.55.3
themerexkatelyn-gutenberg_wordpress_blog_theme
𝑥
< 1.0.4
themerexaddons
1.6.55.1
themerexheaven_11-multiskin_property_theme
𝑥
< 1.0.2
themerexaddons
1.6.54
themerexespecio-food_gutenberg_theme
𝑥
< 1.0.1
themerexaddons
1.6.53.1
themerexpartiso_electioncampaign
𝑥
< 1.1.2002
themerexaddons
1.6.53.3
themerexkargo-freight_transport
𝑥
< 1.1.2004
themerexaddons
1.6.53.2
themerexmaxify-startup_blog
𝑥
< 1.0.4
themerexaddons
1.6.53.1
themerexlingvico-language_learning_school
𝑥
< 1.0.3
themerexaddons
1.6.53.2
themerexaldo-gutenberg_wordpress_blog_theme
𝑥
< 1.0.2
themerexaddons
1.6.52.2
themerexvixus-startup_\/_mobile_application
𝑥
< 1.0.4
themerexaddons
1.6.52.1
themerexwellspring_water_filter_systems
𝑥
< 1.0.3
themerexaddons
1.6.52.1
themerexnazareth-church
𝑥
< 1.0.5
themerexaddons
1.6.53
themerextediss-soft_play_area\,_cafe_\&_child_care_center
𝑥
< 1.0.3
themerexaddons
1.6.51.3
themerexyolox-startup_magazine_\&_blog_wordpress_theme
𝑥
< 1.0.3
themerexaddons
1.6.51.3
themerexmeals_and_wheels-food_truck
𝑥
< 1.0.3
themerexaddons
1.6.51.1
themerexrosalinda-vegetarian_\&_health_coach
𝑥
< 1.0.3
themerexaddons
1.6.50
themerexvapester
𝑥
< 1.1.2001
themerexaddons
1.6.50
themerexmodern_housewife-housewife_and_family_blog
𝑥
< 1.0.2
themerexaddons
1.6.50.1
themerexchainpress
𝑥
< 1.0.3
themerexaddons
1.6.51.1
themerexjustitia-multiskin_lawyer_theme
𝑥
< 1.0.3
themerexaddons
1.6.50
themerexhobo_digital_nomad_blog
𝑥
< 1.0.3
themerexaddons
1.6.50.1
themerexrhodos-creative_corporate_wordpress_theme
𝑥
< 1.3.2001
themerexaddons
1.6.50
themerexbuzz_stone-magazine_\&_blog
𝑥
< 1.0.3
themerexaddons
1.0.49.10
themerexcorredo_sport_event
𝑥
< 1.1.2003
themerexaddons
1.6.49.8
themerexsavejulia_personal_fundraising_campaign
𝑥
< 1.0.3
themerexaddons
1.6.49.6
themerexbonkozoo_zoo
𝑥
< 1.0.3
themerexaddons
1.6.49.6.2
themerexrenewal-plastic_surgeon_clinic
𝑥
< 1.0.3
themerexaddons
1.6.49.5
themerexgloss_blog
𝑥
< 1.0.1
themerexaddons
1.6.58.2
themerexplumbing-repair\,_building_\&_construction_wordpress_theme
𝑥
< 3.0.1
themerexaddons
1.6.61.2
themerextopper_theme_and_skins
-
𝑥
= Vulnerable software versions