7.5
CVSSv3

CVE-2017-6104

Published: 02/03/2017 Updated: 03/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Remote file upload vulnerability in Wordpress Plugin Mobile App Native 3.0.

Vulnerable Product Search on Vulmon Subscribe to Product

zen mobile app native project zen mobile app native

Exploits

import requests import random import string print "---------------------------------------------------------------------" print "Multiple Wordpress Plugin - Remote File Upload Exploit\nDiscovery: Larry W Cashdollar\nExploit Author: Munir Njiru\nCWE: 434\n\n1 Zen App Mobile Native <=30 (CVE-2017-6104)\n2 Wordpress Plugin webapp-builder v20 ...
WordPress plugins Zen App Mobile Native versions 30 and below, webapp-builder version 20, wp2android-turn-wp-site-into-android-app version 114, mobile-app-builder-by-wappress version 105, and mobile-friendly-app-builder-by-easytouch version 30 suffer from a remote shell upload vulnerability ...
WordPress Mobile App Native plugin version 30 suffers from a remote shell upload vulnerability ...