Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-102872
HistoryNov 19, 2021 - 12:00 a.m.

WordPress plugin Popular Posts arbitrary file upload vulnerability

2021-11-1900:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.955 High

EPSS

Percentile

99.4%

WordPress is a blogging platform developed using the PHP language, which supports setting up personal blogging sites on PHP and MySQL servers. WordPress plugin Popular Posts 5.3.2 and previous versions are vulnerable to arbitrary file uploads. An attacker could exploit the vulnerability to upload malicious files leading to remote code execution.

CPENameOperatorVersion
wordpress popular postsle5.3.2