Unrestricted file upload vulnerability in the fusion_options function in functions.php in the Fusion theme 3.1 for Wordpress allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension in a fusion_save action, then accessing it via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2015-03-03T19:00:00
Updated: 2024-08-06T05:10:15.577Z
Reserved: 2015-03-03T00:00:00
Link: CVE-2015-2194
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-03-03T19:59:00.060
Modified: 2024-11-21T02:26:57.490
Link: CVE-2015-2194
Redhat
No data.