Filtered by vendor Importwp Subscriptions
Filtered by product Import Wp Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-1273 1 Importwp 1 Import Wp 2024-08-02 7.2 High
The Import WP WordPress plugin before 2.4.6 does not validate the imported file in some cases, allowing high privilege users such as admin to upload arbitrary files (such as PHP), leading to RCE