Логотип exploitDog
bind:CVE-2021-24145
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24145

Количество 2

Количество 2

nvd логотип

CVE-2021-24145

почти 5 лет назад

Arbitrary file upload in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly check the imported file, allowing PHP ones to be uploaded by administrator by using the 'text/csv' content-type in the request.

CVSS3: 7.2
EPSS: Критический
github логотип

GHSA-5vmg-gchf-rcpm

больше 3 лет назад

Arbitrary file upload in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly check the imported file, allowing PHP ones to be uploaded by administrator by using the 'text/csv' content-type in the request.

EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24145

Arbitrary file upload in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly check the imported file, allowing PHP ones to be uploaded by administrator by using the 'text/csv' content-type in the request.

CVSS3: 7.2
93%
Критический
почти 5 лет назад
github логотип
GHSA-5vmg-gchf-rcpm

Arbitrary file upload in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly check the imported file, allowing PHP ones to be uploaded by administrator by using the 'text/csv' content-type in the request.

93%
Критический
больше 3 лет назад

Уязвимостей на страницу