The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the mj_smgt_user_avatar_image_upload() function in all versions up to, and including, 91.5.0. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.
Metrics
Affected Vendors & Products
References
History
Sun, 24 Nov 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Dasinfomedia
Dasinfomedia school Management System |
|
CPEs | cpe:2.3:a:dasinfomedia:school_management_system:-:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Dasinfomedia
Dasinfomedia school Management System |
|
Metrics |
ssvc
|
Sat, 23 Nov 2024 07:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the mj_smgt_user_avatar_image_upload() function in all versions up to, and including, 91.5.0. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible. | |
Title | School Management <= 91.5.0 - Unauthenticated Arbitrary File Upload | |
Weaknesses | CWE-434 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Wordfence
Published: 2024-11-23T07:38:07.945Z
Updated: 2024-11-24T18:28:44.067Z
Reserved: 2024-10-08T20:11:46.973Z
Link: CVE-2024-9659
Vulnrichment
Updated: 2024-11-24T18:26:57.486Z
NVD
Status : Received
Published: 2024-11-23T08:15:03.860
Modified: 2024-11-23T08:15:03.860
Link: CVE-2024-9659
Redhat
No data.