The WordPress Flash Uploader plugin prior to 3.1.3 for WordPress allows remote malicious users to execute arbitrary commands via vectors related to invalid characters in image_magic_path.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
tinywebgallery wordpress flash uploader |