PT-2023-10266 · Upthemes · Designfolio Plus

Crashbandicot

·

Publicado

2023-03-07

·

Atualizado

2024-08-06

·

CVE-2015-10087

CVSS v2.0

6.5

Média

VetorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions UpThemes Theme DesignFolio Plus version 1.2
Description A vulnerability has been found in the software, classified as problematic, which affects an unknown functionality and leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Recommendations Apply a patch to fix this issue. Note: Since the product is no longer supported by the maintainer, there might not be an official patch available.

Exploit

Correção

Unrestricted File Upload

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2015-10087

Produtos afetados

Designfolio Plus