The Prevent files / folders access WordPress plugin before 2.5.2 does not validate files to be uploaded, which could allow attackers to upload arbitrary files such as PHP on the server.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2023-09-25T15:56:52.815Z
Updated: 2024-08-02T07:24:04.168Z
Reserved: 2023-08-08T12:07:08.873Z
Link: CVE-2023-4238
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-09-25T16:15:14.837
Modified: 2024-11-21T08:34:41.490
Link: CVE-2023-4238
Redhat
No data.