CVE-2022-3912

CVE-2022-3912

The User Registration WordPress plugin before 2.2.4.1 does not properly restrict the files to be uploaded via an AJAX action available to both unauthenticated and authenticated users, which could allow unauthenticated users to upload PHP files for example.

Source: CVE-2022-3912

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다