Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f783-xqpr-h254

Опубликовано: 22 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.6

Описание

The GEO my WP WordPress plugin before 4.5, gmw-premium-settings WordPress plugin before 3.1 does not sufficiently validate files to be uploaded, which could allow attackers to upload arbitrary files such as PHP on the server.

The GEO my WP WordPress plugin before 4.5, gmw-premium-settings WordPress plugin before 3.1 does not sufficiently validate files to be uploaded, which could allow attackers to upload arbitrary files such as PHP on the server.

EPSS

Процентиль: 58%
0.00372
Низкий

6.6 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.6
nvd
около 1 года назад

The GEO my WP WordPress plugin before 4.5, gmw-premium-settings WordPress plugin before 3.1 does not sufficiently validate files to be uploaded, which could allow attackers to upload arbitrary files such as PHP on the server.

EPSS

Процентиль: 58%
0.00372
Низкий

6.6 Medium

CVSS3