The JobBoardWP WordPress plugin before 1.2.2 does not properly validate file names and types in its file upload functionalities, allowing unauthenticated users to upload arbitrary files such as PHP.
References
| Link | Resource |
|---|---|
| https://wpscan.com/vulnerability/fec68e6e-f612-43c8-8301-80f7ae3be665 | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2022-12-19 14:15
Updated : 2023-11-07 03:56
NVD link : CVE-2022-4061
Mitre link : CVE-2022-4061
CVE.ORG link : CVE-2022-4061
JSON object : View
Products Affected
ultimatemember
- jobboardwp
CWE
No CWE.
