Lucene search

K
wpvulndbWpvulndbWPVDB-ID:0D9461FB-45B1-46CA-93DD-BAAFA6B35424
HistoryNov 29, 2022 - 12:00 a.m.

Simple:Press < 6.8.1 - Admin+ Arbitrary File Update

2022-11-2900:00:00
wpscan.com
6
simple:press plugin
high privilege users
arbitrary files
admin
file update vulnerability

0.001 Low

EPSS

Percentile

23.8%

The plugin does not validate files to be updated, which could allow high privilege users such as admin to update arbitrary files and not just the one allowed by the plugin

CPENameOperatorVersion
simplepresslt6.8.1

0.001 Low

EPSS

Percentile

23.8%

Related for WPVDB-ID:0D9461FB-45B1-46CA-93DD-BAAFA6B35424