Description
A vulnerability in the saveCustomType function of the WP Upload Restriction WordPress plugin allows low-level authenticated users to inject arbitrary web scripts. This issue affects versions 2.2.3 and prior.
No analysis available yet.
Remediation
Vendor Solution
Uninstall plugin from WordPress site.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-21275 | A vulnerability in the saveCustomType function of the WP Upload Restriction WordPress plugin allows low-level authenticated users to inject arbitrary web scripts. This issue affects versions 2.2.3 and prior. |
References
History
Mon, 16 Sep 2024 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | WP Upload Restriction <= 2.2.3 - Authenticated Stored Cross-Site Scripting | WP Upload Restriction <= 2.2.3 - Authenticated Stored Cross-Site Scripting |
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2024-09-16T18:56:07.715Z
Reserved: 2021-06-10T00:00:00.000Z
Link: CVE-2021-34625
No data.
Status : Modified
Published: 2021-07-07T13:15:08.777
Modified: 2024-11-21T06:10:50.330
Link: CVE-2021-34625
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD