The Slider Revolution WordPress plugin through 6.6.12 does not check for valid image files upon import, leading to an arbitrary file upload which may be escalated to Remote Code Execution in some server configurations.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/a8350890-e6d4-4b04-a158-2b0ee3748e65 | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: WPScan
Published: 2023-06-19T10:52:49.053Z
Updated: 2023-06-19T10:52:49.053Z
Reserved: 2023-04-27T19:06:49.720Z
Link: CVE-2023-2359
JSON object: View
NVD Information
Status : Modified
Published: 2023-06-19T11:15:10.043
Modified: 2023-11-07T04:12:26.787
Link: CVE-2023-2359
JSON object: View
Redhat Information
No data.
CWE