First published: Mon Aug 19 2024(Updated: )
Unrestricted Upload of File with Dangerous Type vulnerability in Bit Apps Bit Form Pro allows Command Injection.This issue affects Bit Form Pro: from n/a through 2.6.4.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bitapps Bit Form | <=2.6.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43249 is considered a high severity vulnerability due to its potential for command injection through unrestricted file uploads.
To fix CVE-2024-43249, update your Bit Form Pro plugin to version 2.6.5 or later.
CVE-2024-43249 affects all versions of Bit Form Pro up to and including 2.6.4.
CVE-2024-43249 is categorized as an unrestricted file upload vulnerability, allowing command injection.
Users of the Bit Form Pro plugin for WordPress prior to version 2.6.5 are impacted by CVE-2024-43249.