First published: Thu Aug 22 2019(Updated: )
The wp-file-upload plugin before 3.4.1 for WordPress has insufficient restrictions on upload of .php.js files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Iptanus WordPress File Upload | <3.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2015-9341.
The title of the vulnerability is 'The wp-file-upload plugin before 3.4.1 for WordPress has insufficient restrictions on upload of .php.js files.'
The affected software is the wp-file-upload plugin before version 3.4.1 for WordPress.
The severity of CVE-2015-9341 is high with a severity value of 7.5.
To fix CVE-2015-9341, update the wp-file-upload plugin to version 3.4.1 or higher.