The File Manager Pro WordPress plugin before 1.8.1 allows admin users to upload arbitrary files, even in environments where such a user should not be able to gain full control of the server, such as a multisite installation. This leads to remote code execution.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: WPScan

Published: 2023-10-16T19:39:21.036Z

Updated: 2023-10-16T19:39:21.036Z

Reserved: 2023-09-08T21:00:47.219Z


Link: CVE-2023-4861

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-10-16T20:15:17.067

Modified: 2023-11-07T04:23:05.003


Link: CVE-2023-4861

JSON object: View

cve-icon Redhat Information

No data.

CWE

No CWE.