CVE-2016-10958

Publication date

2019-09-16 12:07:47

Family

mitre

State

PUBLISHED

Description

The estatik plugin before 2.3.0 for WordPress has unauthenticated arbitrary file upload via es_media_images[] to wp-admin/admin-ajax.php.