Описание
Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-content/themes/elemin/themify/themify-ajax.php file.
Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-content/themes/elemin/themify/themify-ajax.php file.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2013-20002
- https://en.0day.today/exploit/22090
- https://packetstormsecurity.com/files/124149/WordPress-Elemin-Shell-Upload.html
- https://themify.me/blog/updated-themify-framework-to-fix-the-vulnerability
- https://themify.me/blog/urgent-vulnerability-found-in-themify-framework-please-read
Связанные уязвимости
CVSS3: 9.8
nvd
больше 4 лет назад
Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-content/themes/elemin/themify/themify-ajax.php file.