logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-2554

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-2554

Description:
The Enable Media Replace WordPress plugin before 4.0.0 does not ensure that renamed files are moved to the Upload folder, which could allow high privilege users such as admin to move them outside to the web root directory via a path traversal attack for example
Last updated date:
10/11/2022
Type:
exploit
Confidence:
HIGH
Date of publishing:
10/11/2022
Reference url to background

https://wpscan.com/vulnerability/5872f4bf-f423-4ace-b8b6-d4cc4f6ca8d9

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy