CVE-2024-50529: WordPress Training – Courses plugin <= 2.0.1 - Arbitrary File Upload vulnerability
Published Nov 4, 2024
·Updated
Unrestricted Upload of File with Dangerous Type vulnerability in rudrainn Training – Courses training allows Upload a Web Shell to a Web Server.This issue affects Training – Courses: from n/a through <= 2.0.1.
Affected Software
1 affected component
Rudrainnovative Training - Courses Wordpress<=2.0.1
Event History
Nov 4, 2024
CVE Published
via MITRE·01:41 PM
Data Sourced
via MITRE·01:41 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-50529?
CVE-2024-50529 is rated as a high severity vulnerability due to its potential to allow unauthorized file uploads including web shells.
2
How do I fix CVE-2024-50529?
To fix CVE-2024-50529, update the Rudra Innovative Training - Courses plugin to a version later than 2.0.1.
3
What does CVE-2024-50529 affect?
CVE-2024-50529 affects versions of the Rudra Innovative Training - Courses plugin from n/a through 2.0.1.
4
What type of vulnerability is CVE-2024-50529?
CVE-2024-50529 is an Unrestricted Upload of File with Dangerous Type vulnerability.
5
Can CVE-2024-50529 be exploited remotely?
Yes, CVE-2024-50529 can be exploited remotely to upload malicious files to the server.