WordPress · Relocate Upload · CVE-2012-1205
**Name of the Vulnerable Software and Affected Versions**
Relocate Upload plugin versions prior to 0.20
**Description**
The issue allows remote attackers to execute arbitrary PHP code via a URL in the `abspath` parameter in the relocate-upload.php file.
**Recommendations**
For Relocate Upload plugin versions prior to 0.20, update to version 0.20 or later to resolve the issue.