Security Advisory

CVE-2019-14467

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-11-18 15:21:09
Last updated 2024-08-05 00:19:41
Assigner mitre
State PUBLISHED

Description

The Social Photo Gallery plugin 1.0 for WordPress allows Remote Code Execution by creating an album and attaching a malicious PHP file in the cover photo album, because the file extension is not checked.