Beveiligingsadvies

CVE-2022-2638

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-08-29 17:15:37
Laatst bijgewerkt 2024-08-03 00:46:03
Toegewezen door WPScan
CVSS-score geen score
Status PUBLISHED

Beschrijving

The Export All URLs WordPress plugin before 4.4 does not validate the path of the file to be removed on the system which is supposed to be the CSV file. This could allow high privilege users to delete arbitrary file from the server