20 lines
727 B
JSON
Raw Normal View History

{
"id": "CVE-2023-5604",
"sourceIdentifier": "contact@wpscan.com",
"published": "2023-11-27T17:15:09.030",
"lastModified": "2023-11-27T19:03:35.337",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
"lang": "en",
"value": "The Asgaros Forum WordPress plugin before 2.7.1 allows forum administrators, who may not be WordPress (super-)administrators, to set insecure configuration that allows unauthenticated users to upload dangerous files (e.g. .php, .phtml), potentially leading to remote code execution."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/4ce69d71-87bf-4d95-90f2-63d558c78b69",
"source": "contact@wpscan.com"
}
]
}