CVE-2021-24311

Publication date

2021-06-01 11:33:29

Family

WPScan

State

PUBLISHED

Description

The wp_ajax_upload-remote-file AJAX action of the External Media WordPress plugin before 1.0.34 was vulnerable to arbitrary file uploads via any authenticated users.