vendor/elfinder/php/connector.minimal.php in the secure-file-manager plugin through 2.5 for WordPress loads elFinder code without proper access control. Thus, any authenticated user can run the elFinder upload command to achieve remote code execution. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-12-14T02:20:27
Updated: 2024-08-04T17:02:07.522Z
Reserved: 2020-12-14T00:00:00
Link: CVE-2020-35235
Vulnrichment
Updated: 2024-08-04T17:02:07.522Z
NVD
Status : Modified
Published: 2020-12-14T03:15:13.370
Modified: 2024-11-21T05:27:05.023
Link: CVE-2020-35235
Redhat
No data.