CVE-2014-5014
25.04.2018, 17:29
The WordPress Flash Uploader plugin before 3.1.3 for WordPress allows remote attackers to execute arbitrary commands via vectors related to invalid characters in image_magic_path.
| Vendor | Product | Version |
|---|---|---|
| tinywebgallery | wordpress_flash_uploader | 𝑥 < 3.1.3 |
𝑥
= Vulnerable software versions