Lucene search

K
cvelistWPScanCVELIST:CVE-2023-5762
HistoryDec 04, 2023 - 9:28 p.m.

CVE-2023-5762 Filr – Secure document library < 1.2.3.6 - Author+ RCE via file upload with phar ext

2023-12-0421:28:22
WPScan
www.cve.org
cve-2023-5762
filr plugin
rce
vulnerability
remote code execution
file upload

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

34.6%

The Filr WordPress plugin before 1.2.3.6 is vulnerable from an RCE (Remote Code Execution) vulnerability, which allows the operating system to execute commands and fully compromise the server on behalf of a user with Author-level privileges.

CNA Affected

[
  {
    "vendor": "Unknown",
    "product": "Filr",
    "versions": [
      {
        "status": "affected",
        "versionType": "semver",
        "version": "0",
        "lessThan": "1.2.3.6"
      }
    ],
    "defaultStatus": "unaffected",
    "collectionURL": "https://wordpress.org/plugins"
  }
]

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

34.6%

Related for CVELIST:CVE-2023-5762