Security Advisory

CVE-2021-24684

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-18 13:45:58
Last updated 2024-08-03 19:42:16
Assigner WPScan
State PUBLISHED

Description

The WordPress PDF Light Viewer Plugin WordPress plugin before 1.4.12 allows users with Author roles to execute arbitrary OS command on the server via OS Command Injection when invoking Ghostscript.