Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-34682 | The ZoomSounds plugin before 6.05 contains a PHP file allowing unauthenticated users to upload an arbitrary file anywhere on the web server. |
Mon, 07 Jul 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Digitalzoomstudio
Digitalzoomstudio zoomsounds |
|
| Weaknesses | CWE-434 | |
| CPEs | cpe:2.3:a:digitalzoomstudio:zoomsounds:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Digitalzoomstudio
Digitalzoomstudio zoomsounds |
Tue, 01 Jul 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 25 Jun 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The ZoomSounds plugin before 6.05 contains a PHP file allowing unauthenticated users to upload an arbitrary file anywhere on the web server. | |
| Title | ZoomSounds < 6.05 - Unauthenticated Arbitrary File Upload | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-07-01T19:09:26.039Z
Reserved: 2025-06-25T07:37:53.427Z
Link: CVE-2021-4457
Updated: 2025-06-25T19:15:22.915Z
Status : Analyzed
Published: 2025-06-25T15:15:21.100
Modified: 2025-07-07T17:40:37.030
Link: CVE-2021-4457
No data.
OpenCVE Enrichment
No data.
EUVD