The Directorist WordPress plugin prior to 7.0.6.2 was vulnerable to Cross-Site Request Forgery to Remote File Upload leading to arbitrary PHP shell uploads in the wp-content/plugins directory.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
wpwax directorist |