Логотип exploitDog
bind:CVE-2019-10869
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-10869

Количество 2

Количество 2

nvd логотип

CVE-2019-10869

почти 7 лет назад

Path Traversal and Unrestricted File Upload exists in the Ninja Forms plugin before 3.0.23 for WordPress (when the Uploads add-on is activated). This allows an attacker to traverse the file system to access files and execute code via the includes/fields/upload.php (aka upload/submit page) name and tmp_name parameters.

CVSS3: 8.1
EPSS: Средний
github логотип

GHSA-mfw8-6m9g-8vvr

больше 3 лет назад

Path Traversal and Unrestricted File Upload exists in the Ninja Forms plugin before 3.0.23 for WordPress (when the Uploads add-on is activated). This allows an attacker to traverse the file system to access files and execute code via the includes/fields/upload.php (aka upload/submit page) name and tmp_name parameters.

CVSS3: 8.1
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-10869

Path Traversal and Unrestricted File Upload exists in the Ninja Forms plugin before 3.0.23 for WordPress (when the Uploads add-on is activated). This allows an attacker to traverse the file system to access files and execute code via the includes/fields/upload.php (aka upload/submit page) name and tmp_name parameters.

CVSS3: 8.1
48%
Средний
почти 7 лет назад
github логотип
GHSA-mfw8-6m9g-8vvr

Path Traversal and Unrestricted File Upload exists in the Ninja Forms plugin before 3.0.23 for WordPress (when the Uploads add-on is activated). This allows an attacker to traverse the file system to access files and execute code via the includes/fields/upload.php (aka upload/submit page) name and tmp_name parameters.

CVSS3: 8.1
48%
Средний
больше 3 лет назад

Уязвимостей на страницу