1 results (0.001 seconds)

CVSS: 9.8EPSS: 4%CPEs: 1EXPL: 1

06 Jan 2008 — Unrestricted file upload vulnerability in ajaxfilemanager.php in the Wp-FileManager 1.2 plugin for WordPress allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors. Vulnerabilidad de subida de ficheros no restringida en ajaxfilemanager.php de la extensión (plugin) Wp-FileManager 1.2 para WordPress permite a atacantes remotos subir y ejecutar ficheros PHP de su elección mediante vectores no especificados. • https://www.exploit-db.com/exploits/4844 • CWE-94: Improper Control of Generation of Code ('Code Injection') •