CVE Database
/

CVE-2022-3125

Back to search

CVE-2022-3125

Published: Oct 3, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

The Frontend File Manager Plugin WordPress plugin before 21.3 allows any authenticated users, such as subscriber, to rename a file to an arbitrary extension, like PHP, which could allow them to basically be able to upload arbitrary files on the server and achieve RCE

VendorProductVersions

Unknown

Frontend File Manager Plugin

affected
21.3 - < 21.3

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now