Логотип exploitDog
bind:CVE-2022-4774
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4774

Количество 2

Количество 2

nvd логотип

CVE-2022-4774

больше 2 лет назад

The Bit Form WordPress plugin before 1.9 does not validate the file types uploaded via it's file upload form field, allowing unauthenticated users to upload arbitrary files types such as PHP or HTML files to the server, leading to Remote Code Execution.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-5267-x3g9-g6x7

больше 2 лет назад

The Bit Form WordPress plugin before 1.9 does not validate the file types uploaded via it's file upload form field, allowing unauthenticated users to upload arbitrary files types such as PHP or HTML files to the server, leading to Remote Code Execution.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-4774

The Bit Form WordPress plugin before 1.9 does not validate the file types uploaded via it's file upload form field, allowing unauthenticated users to upload arbitrary files types such as PHP or HTML files to the server, leading to Remote Code Execution.

CVSS3: 9.8
5%
Низкий
больше 2 лет назад
github логотип
GHSA-5267-x3g9-g6x7

The Bit Form WordPress plugin before 1.9 does not validate the file types uploaded via it's file upload form field, allowing unauthenticated users to upload arbitrary files types such as PHP or HTML files to the server, leading to Remote Code Execution.

CVSS3: 9.8
5%
Низкий
больше 2 лет назад

Уязвимостей на страницу