Skip to main content

Vendor/product archive

tinywebgallery / wordpress_flash_uploader CVEs

Beta · best-effort

1 CVEs tagged to tinywebgallery / wordpress_flash_uploader1 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2014-5014

Published Apr 25, 2018

The WordPress Flash Uploader plugin before 3.1.3 for WordPress allows remote attackers to execute arbitrary commands via vectors related to invalid characters in image_magic_path.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1