1 results (0.003 seconds)

CVSS: 9.8EPSS: 1%CPEs: 1EXPL: 1

File Upload vulnerability in PluckCMS v.4.7.10 dev versions allows a remote attacker to execute arbitrary code via a crafted image file to the the save_file() parameter. • https://github.com/pluck-cms/pluck/issues/79 • CWE-434: Unrestricted Upload of File with Dangerous Type •