Security Advisory

CVE-2019-15866

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-09-03 11:51:33
Last updated 2024-08-05 01:03:32
Assigner mitre
State PUBLISHED

Description

The crelly-slider plugin before 1.3.5 for WordPress has arbitrary file upload via a PHP file inside a ZIP archive to wp_ajax_crellyslider_importSlider.