The WP JobSearch WordPress plugin before 2.3.4 does not validate files to be uploaded, which could allow unauthenticated attackers to upload arbitrary files such as PHP on the server
Metrics
Affected Vendors & Products
References
History
Fri, 09 Aug 2024 22:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2024-02-27T08:30:25.818Z
Updated: 2024-08-09T20:57:46.541Z
Reserved: 2023-12-07T15:01:09.222Z
Link: CVE-2023-6585
Vulnrichment
Updated: 2024-08-02T08:35:14.606Z
NVD
Status : Awaiting Analysis
Published: 2024-02-27T09:15:37.147
Modified: 2024-11-21T08:44:09.377
Link: CVE-2023-6585
Redhat
No data.