7.5
CVSSv3

CVE-2019-17234

Published: 12/11/2019 Updated: 21/07/2021
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 571
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

includes/class-coming-soon-creator.php in the igniteup plugin up to and including 3.4 for WordPress allows unauthenticated arbitrary file deletion.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

getigniteup igniteup

Github Repositories

Wordpress IgniteUp plugin < 3.4.1 allows unauthenticated users to arbitrarily delete files on the webserver possibly causing DoS.

Wordpress IgniteUp plugin vulnerability Wordpress IgniteUp plugin v34 and below allows remote unauthenticated users to potentially arbitrarily delete any file on target webserver possibly causing a Denial of Service attack CVE-2019-17234 timeline The vulnerability was reported to wordpressorg team on September 20, 2019 and new version of the plugin 341 was released on Nove

Wordpress IgniteUp plugin < 3.4.1 allows unauthenticated users to arbitrarily delete files on the webserver possibly causing DoS.

Wordpress IgniteUp plugin vulnerability Wordpress IgniteUp plugin v34 and below allows remote unauthenticated users to potentially arbitrarily delete any file on target webserver possibly causing a Denial of Service attack CVE-2019-17234 timeline The vulnerability was reported to wordpressorg team on September 20, 2019 and new version of the plugin 341 was released on Nove