PT-2018-8945 · WordPress · Ultimate Member

Gen Sato

·

Publicado

2018-05-14

·

Atualizado

2019-11-20

·

CVE-2018-0587

CVSS v3.1

4.3

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Ultimate Member plugin versions prior to 2.0.4
Description The issue allows remote authenticated users to upload arbitrary image files.
Recommendations For versions prior to 2.0.4, update to version 2.0.4 or later to resolve the issue.

Correção

Unrestricted File Upload

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-0587

Produtos afetados

Ultimate Member