What the vulnerability does
01Description
Unrestricted Upload of File with Dangerous Type vulnerability in Terry Lin WP Githuber MD.This issue affects WP Githuber MD: from n/a through 1.16.2.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
What the vulnerability does
Unrestricted Upload of File with Dangerous Type vulnerability in Terry Lin WP Githuber MD.This issue affects WP Githuber MD: from n/a through 1.16.2.
Explanation of Vulnerability in Simple Terms
WP Githuber MD allows authenticated administrators to upload files without proper validation, potentially enabling them to upload malicious files to the site. The vulnerability exists in versions up to 1.16.2. An attacker with admin privileges can exploit this to compromise site integrity and confidentiality. The scope extends beyond the plugin itself.
What an attacker can do
Upload malicious files to the site with admin access.
Potential impact on your site
An admin account compromise could lead to malicious file uploads affecting site security and data.
Conditions required to exploit
Attacker must have administrator privileges on the WordPress site.
Key dates
External resources
Related vulnerabilities