Lucene search

K
wpvulndbWpvulndbWPVDB-ID:2B7966F3-97CA-4E07-830A-44237B0956EB
HistoryNov 23, 2023 - 12:00 a.m.

Rename Media Files <= 1.0.1 - Authenticated (Contributor+) Remote Code Execution

2023-11-2300:00:00
wpscan.com
10
remote code execution
authenticated
contributor-level access
server vulnerability
wordpress plugin

AI Score

9.1

Confidence

High

EPSS

0.001

Percentile

18.2%

Description The Rename Media Files plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.0.1. This makes it possible for authenticated attackers, with contributor-level access and above, to execute code on the server.

AI Score

9.1

Confidence

High

EPSS

0.001

Percentile

18.2%

Related for WPVDB-ID:2B7966F3-97CA-4E07-830A-44237B0956EB