Description
The wp-eMember WordPress plugin before 10.6.6 does not validate files to be uploaded, which could allow admins to upload arbitrary files such as PHP on the server
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Tue, 06 May 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tipsandtricks-hq
Tipsandtricks-hq wp Emember |
|
| Weaknesses | CWE-434 | |
| CPEs | cpe:2.3:a:tipsandtricks-hq:wp_emember:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Tipsandtricks-hq
Tipsandtricks-hq wp Emember |
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-01T21:03:10.803Z
Reserved: 2024-05-17T19:37:44.911Z
Link: CVE-2024-5080
Updated: 2024-08-01T21:03:10.803Z
Status : Analyzed
Published: 2024-07-13T06:15:04.163
Modified: 2025-05-06T16:50:27.053
Link: CVE-2024-5080
No data.
OpenCVE Enrichment
No data.
Weaknesses