CVE-2021-24248
06.05.2021, 13:15
The Business Directory Plugin Easy Listing Directories for WordPress WordPress plugin before 5.11.1 did not properly check for imported files, forbidding certain extension via a blacklist approach, allowing administrator to import an archive with a .php4 inside for example, leading to RCEEnginsight
Vendor | Product | Version |
---|---|---|
strategy11 | business_directory_plugin_-_easy_listing_directories | 𝑥 < 5.11.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration