Back to search
CVE-2023-5931
Published: Dec 26, 2023
Modified: Aug 2, 2024
PUBLISHED
Description
The rtMedia for WordPress, BuddyPress and bbPress WordPress plugin before 4.6.16 does not validate files to be uploaded, which could allow attackers with a low-privilege account (e.g. subscribers) to upload arbitrary files such as PHP on the server
| Vendor | Product | Versions |
|---|---|---|
Unknown | rtMedia for WordPress, BuddyPress and bbPress | affected 0 - < 4.6.16 |
References
https://wpscan.com/vulnerability/3d6889e3-a01b-4e7f-868f-af7cc8c7531a
exploit
vdb-entry
technical-description
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now