Description
The ZoomSounds plugin before 6.05 contains a PHP file allowing unauthenticated users to upload an arbitrary file anywhere on the web server.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-34682 | The ZoomSounds plugin before 6.05 contains a PHP file allowing unauthenticated users to upload an arbitrary file anywhere on the web server. |
References
History
Mon, 07 Jul 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Digitalzoomstudio
Digitalzoomstudio zoomsounds |
|
| Weaknesses | CWE-434 | |
| CPEs | cpe:2.3:a:digitalzoomstudio:zoomsounds:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Digitalzoomstudio
Digitalzoomstudio zoomsounds |
Tue, 01 Jul 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 25 Jun 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The ZoomSounds plugin before 6.05 contains a PHP file allowing unauthenticated users to upload an arbitrary file anywhere on the web server. | |
| Title | ZoomSounds < 6.05 - Unauthenticated Arbitrary File Upload | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-07-01T19:09:26.039Z
Reserved: 2025-06-25T07:37:53.427Z
Link: CVE-2021-4457
Updated: 2025-06-25T19:15:22.915Z
Status : Analyzed
Published: 2025-06-25T15:15:21.100
Modified: 2025-07-07T17:40:37.030
Link: CVE-2021-4457
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD