WordPress SlideShow Gallery Authenticated File Upload

Discussion in 'News Aggregator' started by Packet Storm, 21 Apr 2015.

  1. Packet Storm

    Packet Storm Guest

    The WordPress SlideShow Gallery plugin contains an authenticated file upload vulnerability. You can upload arbitrary files to the upload folder, because the plugin also uses it's own file upload mechanism instead of the WordPress API it's possible to upload any file type.

    Continue reading...
     

Share This Page

Loading...