CVE-2021-24684
18.10.2021, 14:15
The WordPress PDF Light Viewer Plugin WordPress plugin before 1.4.12 allows users with Author roles to execute arbitrary OS command on the server via OS Command Injection when invoking Ghostscript.
| Vendor | Product | Version |
|---|---|---|
| teamlead | pdf-light-viewer | 𝑥 < 1.4.12 |
𝑥
= Vulnerable software versions