The Fileviewer WordPress plugin... CVE-2021-24491

6.8 AV AC AU C I A
发布: 2021-09-13
修订: 2024-11-21

The Fileviewer WordPress plugin through 2.2 does not have CSRF checks in place when performing actions such as upload and delete files. As a result, attackers could make a logged in administrator delete and upload arbitrary files via a CSRF attack

0%
暂无可用Exp或PoC
当前有1条受影响产品信息