Description
cloner.functions.php in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to execute arbitrary commands via a file containing filenames with shell metacharacters, as demonstrated by using the backup comments feature to create the file.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-4359 | cloner.functions.php in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to execute arbitrary commands via a file containing filenames with shell metacharacters, as demonstrated by using the backup comments feature to create the file. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T06:11:12.880Z
Reserved: 2015-06-05T00:00:00.000Z
Link: CVE-2015-4336
No data.
Status : Deferred
Published: 2015-06-17T18:59:04.737
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-4336
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD