Vulnerabilities (CVE)

Filtered by vendor Binarymoon Subscribe
Filtered by product Wordthumb
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-4663 1 Binarymoon 2 Timthumb, Wordthumb 2024-02-04 6.8 MEDIUM N/A
TimThumb 2.8.13 and WordThumb 1.07, when Webshot (aka Webshots) is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the src parameter.