ZeroHour

CVE-2024-5630

PoC
CVSS 3.1
8.8 high
EPSS
<1%p50
Published
()
Modified
Description

The Insert or Embed Articulate Content into WordPress plugin before 4.3000000024 does not prevent authors from uploading arbitrary files to the site, which may allow them to upload PHP shells on affected sites.

Vendors
elearningfreak
Products
insert or embed articulate content
Ecosystems
WordPress
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.