Lucene search

K
patchstackThinkland Security TeamPATCHSTACK:6E79D7A928208CF18331501B2A61F370
HistoryOct 21, 2021 - 12:00 a.m.

WordPress Catch Themes Demo Import plugin <= 1.7 - Arbitrary File Upload vulnerability

2021-10-2100:00:00
Thinkland Security Team
patchstack.com
13

0.936 High

EPSS

Percentile

99.1%

Arbitrary File Upload vulnerability discovered by Thinkland Security Team in WordPress Catch Themes Demo Import plugin (versions <= 1.7).

Solution

           Update the WordPress Catch Themes Demo Import plugin to the latest available version (at least 1.8).
CPENameOperatorVersion
catch themes demo importle1.7

0.936 High

EPSS

Percentile

99.1%