CVE-2019-14467
18.11.2019, 16:15
The Social Photo Gallery plugin 1.0 for WordPress allows Remote Code Execution by creating an album and attaching a malicious PHP file in the cover photo album, because the file extension is not checked.Enginsight
Vendor | Product | Version |
---|---|---|
infoway | social_photo_gallery | 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References