The Slider Revolution WordPress plugin through 6.6.12 does not check for valid image files upon import, leading to an arbitrary file upload which may be escalated to Remote Code Execution in some server configurations.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2023-06-19T10:52:49.053Z

Updated: 2024-08-02T06:19:14.931Z

Reserved: 2023-04-27T19:06:49.720Z

Link: CVE-2023-2359

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-06-19T11:15:10.043

Modified: 2023-11-07T04:12:26.787

Link: CVE-2023-2359

cve-icon Redhat

No data.