CVE-2008-2392

Unrestricted file upload vulnerability in WordPress 2.5.1 and earlier might allow remote authenticated administrators to upload and execute arbitrary PHP files via the Upload section in the Write Tabs area of the dashboard.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:wordpress:wordpress:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-05-21 13:24

Updated : 2024-02-04 17:33


NVD link : CVE-2008-2392

Mitre link : CVE-2008-2392

CVE.ORG link : CVE-2008-2392


JSON object : View

Products Affected

wordpress

  • wordpress
CWE
CWE-20

Improper Input Validation