Description
The Frontend File Manager Plugin WordPress plugin before 21.3 allows any authenticated users, such as subscriber, to rename a file to an arbitrary extension, like PHP, which could allow them to basically be able to upload arbitrary files on the server and achieve RCE
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-42552 | The Frontend File Manager Plugin WordPress plugin before 21.3 allows any authenticated users, such as subscriber, to rename a file to an arbitrary extension, like PHP, which could allow them to basically be able to upload arbitrary files on the server and achieve RCE |
References
History
No history.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-03T01:00:10.419Z
Reserved: 2022-09-05T00:00:00.000Z
Link: CVE-2022-3125
No data.
Status : Modified
Published: 2022-10-03T14:15:20.433
Modified: 2024-11-21T07:18:52.697
Link: CVE-2022-3125
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD