Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-24186
HistoryAug 24, 2020 - 2:15 p.m.

Remote code execution

2020-08-2414:15:00
PRIOn knowledge base
www.prio-n.com
8

9.7 High

AI Score

Confidence

High

0.975 High

EPSS

Percentile

100.0%

A Remote Code Execution vulnerability exists in the gVectors wpDiscuz plugin 7.0 through 7.0.4 for WordPress, which allows unauthenticated users to upload any type of file, including PHP files via the wmuUploadFiles AJAX action.

CPENameOperatorVersion
wpdiscuzge7.0
wpdiscuzle7.0.4