CVE Database
/

CVE-2023-28409

Back to search

CVE-2023-28409

Published: May 23, 2023

Modified: Jan 31, 2025

PUBLISHED

Description

Unrestricted upload of file with dangerous type exists in MW WP Form versions v4.4.2 and earlier, which may allow a remote unauthenticated attacker to upload an arbitrary file.

VendorProductVersions

Monkey Wrench Inc.

MW WP Form

affected
versions v4.4.2 and earlier

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now