Логотип exploitDog
bind:CVE-2021-42362
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-42362

Количество 2

Количество 2

nvd логотип

CVE-2021-42362

около 4 лет назад

The WordPress Popular Posts WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/src/Image.php file which makes it possible for attackers with contributor level access and above to upload malicious files that can be used to obtain remote code execution, in versions up to and including 5.3.2.

CVSS3: 8.8
EPSS: Высокий
github логотип

GHSA-p9wv-phc4-8hqf

больше 3 лет назад

The WordPress Popular Posts WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/src/Image.php file which makes it possible for attackers with contributor level access and above to upload malicious files that can be used to obtain remote code execution, in versions up to and including 5.3.2.

EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-42362

The WordPress Popular Posts WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/src/Image.php file which makes it possible for attackers with contributor level access and above to upload malicious files that can be used to obtain remote code execution, in versions up to and including 5.3.2.

CVSS3: 8.8
78%
Высокий
около 4 лет назад
github логотип
GHSA-p9wv-phc4-8hqf

The WordPress Popular Posts WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/src/Image.php file which makes it possible for attackers with contributor level access and above to upload malicious files that can be used to obtain remote code execution, in versions up to and including 5.3.2.

78%
Высокий
больше 3 лет назад

Уязвимостей на страницу