CVE-2014-5324

Publication date

2014-09-26 10:00:00

Family

jpcert

State

PUBLISHED

Description

Unrestricted file upload vulnerability in the N-Media file uploader plugin before 3.4 for WordPress allows remote authenticated users to execute arbitrary PHP code by leveraging Author privileges to store a file.