WordPress Plugin Vulnerabilities

GEO My WordPress < 4.5 - Admin+ Arbitrary File Upload

Description

The plugin does not sufficiently validate files to be uploaded, which could allow attackers to upload arbitrary files such as PHP on the server.

Proof of Concept

Affects Plugins

Fixed in 4.5

References

Miscellaneous

Original Researcher
Michael Dyrna
Submitter
Michael Dyrna
Submitter website
Verified
Yes

Timeline

Publicly Published
2024-10-31 (about 1 year ago)
Added
2024-10-31 (about 1 year ago)
Last Updated
2024-10-31 (about 1 year ago)

Other