CVE-2022-4101

CVE-2022-4101

The Images Optimize and Upload CF7 WordPress plugin through 2.1.4 does not validate the file to be deleted via an AJAX action available to unauthenticated users, which could allow them to delete arbitrary files on the server via path traversal attack.

Source: CVE-2022-4101

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다