WordPress Plugin Vulnerabilities

WP Child Theme Generator < 1.1.3 - Admin+ Arbitrary File Upload

Description

The plugin is vulnerable to arbitrary file uploads, allowing administrators to upload arbitrary files on the affected site's server which may make remote code execution possible.

Affects Plugins

References

Miscellaneous

Original Researcher
Dateoljo of BoB 12th
Verified
No

Timeline

Publicly Published
2023-11-20 (about 2 years ago)
Added
2023-11-28 (about 2 years ago)
Last Updated
2024-09-13 (about 1 year ago)

Other