T
he Insert or Embed Articulate Content into WordPress plugin before 4.3000000024 does not prevent authors from uploading arbitrary files to the site, which may allow them to upload PHP shells on affected sites.
References
| Link | Resource |
|---|---|
| https://wpscan.com/vulnerability/538c875f-4c20-4be0-8098-5bddb7aecff4/ | Exploit Third Party Advisory |
| https://wpscan.com/vulnerability/538c875f-4c20-4be0-8098-5bddb7aecff4/ | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 09:48
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://wpscan.com/vulnerability/538c875f-4c20-4be0-8098-5bddb7aecff4/ - Exploit, Third Party Advisory |
16 Jul 2024, 18:10
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Elearningfreak
Elearningfreak insert Or Embed Articulate Content |
|
| CPE | cpe:2.3:a:elearningfreak:insert_or_embed_articulate_content:*:*:*:*:*:wordpress:*:* | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
| References | () https://wpscan.com/vulnerability/538c875f-4c20-4be0-8098-5bddb7aecff4/ - Exploit, Third Party Advisory | |
| CWE | CWE-434 |
15 Jul 2024, 13:00
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
15 Jul 2024, 06:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-07-15 06:15
Updated : 2024-11-21 09:48
NVD link : CVE-2024-5630
Mitre link : CVE-2024-5630
CVE.ORG link : CVE-2024-5630
JSON object : View
Products Affected
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type