Логотип exploitDog
bind:CVE-2013-1916
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2013-1916

Количество 2

Количество 2

nvd логотип

CVE-2013-1916

больше 3 лет назад

In WordPress Plugin User Photo 0.9.4, when a photo is uploaded, it is only partially validated and it is possible to upload a backdoor on the server hosting WordPress. This backdoor can be called (executed) even if the photo has not been yet approved.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-mfp3-hghm-2qc5

больше 3 лет назад

In WordPress Plugin User Photo 0.9.4, when a photo is uploaded, it is only partially validated and it is possible to upload a backdoor on the server hosting WordPress. This backdoor can be called (executed) even if the photo has not been yet approved.

CVSS3: 8.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2013-1916

In WordPress Plugin User Photo 0.9.4, when a photo is uploaded, it is only partially validated and it is possible to upload a backdoor on the server hosting WordPress. This backdoor can be called (executed) even if the photo has not been yet approved.

CVSS3: 8.8
26%
Средний
больше 3 лет назад
github логотип
GHSA-mfp3-hghm-2qc5

In WordPress Plugin User Photo 0.9.4, when a photo is uploaded, it is only partially validated and it is possible to upload a backdoor on the server hosting WordPress. This backdoor can be called (executed) even if the photo has not been yet approved.

CVSS3: 8.8
26%
Средний
больше 3 лет назад

Уязвимостей на страницу