cve/2024/CVE-2024-28890.md
2024-05-25 21:48:12 +02:00

889 B

CVE-2024-28890

Description

Forminator prior to 1.29.0 contains an unrestricted upload of file with dangerous type vulnerability. If this vulnerability is exploited, a remote attacker may obtain sensitive information by accessing files on the server, alter the site that uses the plugin, and cause a denial-of-service (DoS) condition.

POC

Reference

No PoCs from references.

Github