CVE Database
/

CVE-2021-24684

Back to search

CVE-2021-24684

Published: Oct 18, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

The WordPress PDF Light Viewer Plugin WordPress plugin before 1.4.12 allows users with Author roles to execute arbitrary OS command on the server via OS Command Injection when invoking Ghostscript.

VendorProductVersions

Unknown

WordPress PDF Light Viewer Plugin

affected
1.4.12 - < 1.4.12

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now