The Woffice Core plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the woffice_file_manager_delete() function in all versions up to, and including, 5.4.26. This makes it possible for authenticated attackers, with Contributor-level access and above, to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php).
References
Link | Resource |
---|---|
https://hub.woffice.io/woffice/changelog | Release Notes |
https://themeforest.net/item/woffice-intranetextranet-wordpress-theme/11671924 | Product |
https://www.wordfence.com/threat-intel/vulnerabilities/id/41a362cf-e27e-436a-85f1-7c48e2e098eb?source=cve | Third Party Advisory |
Configurations
History
12 Aug 2025, 17:49
Type | Values Removed | Values Added |
---|---|---|
First Time |
Xtendify woffice
Xtendify |
|
CPE | cpe:2.3:a:xtendify:woffice:*:*:*:*:*:wordpress:*:* | |
References | () https://hub.woffice.io/woffice/changelog - Release Notes | |
References | () https://themeforest.net/item/woffice-intranetextranet-wordpress-theme/11671924 - Product | |
References | () https://www.wordfence.com/threat-intel/vulnerabilities/id/41a362cf-e27e-436a-85f1-7c48e2e098eb?source=cve - Third Party Advisory |
04 Aug 2025, 15:06
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
02 Aug 2025, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-02 04:15
Updated : 2025-08-12 17:49
NVD link : CVE-2025-7694
Mitre link : CVE-2025-7694
CVE.ORG link : CVE-2025-7694
JSON object : View
Products Affected
xtendify
- woffice
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')