Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g47h-745c-4p4f

Опубликовано: 22 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

The Directorist WordPress plugin before 7.0.6.2 was vulnerable to Cross-Site Request Forgery to Remote File Upload leading to arbitrary PHP shell uploads in the wp-content/plugins directory.

The Directorist WordPress plugin before 7.0.6.2 was vulnerable to Cross-Site Request Forgery to Remote File Upload leading to arbitrary PHP shell uploads in the wp-content/plugins directory.

EPSS

Процентиль: 45%
0.00223
Низкий

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 7.5
nvd
около 4 лет назад

The Directorist WordPress plugin before 7.0.6.2 was vulnerable to Cross-Site Request Forgery to Remote File Upload leading to arbitrary PHP shell uploads in the wp-content/plugins directory.

EPSS

Процентиль: 45%
0.00223
Низкий

Дефекты

CWE-352