Security Advisory

CVE-2020-35489

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-12-17 18:16:00
Last updated 2024-08-04 17:02:08
Assigner mitre
State PUBLISHED

Description

The contact-form-7 (aka Contact Form 7) plugin before 5.3.2 for WordPress allows Unrestricted File Upload and remote code execution because a filename may contain special characters.