The File Manager Pro WordPress plugin before 1.8.1 allows admin users to upload arbitrary files, even in environments where such a user should not be able to gain full control of the server, such as a multisite installation. This leads to remote code execution.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2023-10-16T19:39:21.036Z

Updated: 2024-08-02T07:38:00.892Z

Reserved: 2023-09-08T21:00:47.219Z

Link: CVE-2023-4861

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-10-16T20:15:17.067

Modified: 2023-11-07T04:23:05.003

Link: CVE-2023-4861

cve-icon Redhat

No data.