The Upload Resume WordPress plugin through 1.2.0 does not validate the captcha parameter when uploading a resume via the resume_upload_form shortcode, allowing unauthenticated visitors to upload arbitrary media files to the site.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-34212 | The Upload Resume WordPress plugin through 1.2.0 does not validate the captcha parameter when uploading a resume via the resume_upload_form shortcode, allowing unauthenticated visitors to upload arbitrary media files to the site. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 11 Dec 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-12-11T20:42:41.257Z
Reserved: 2023-05-17T06:26:03.200Z
Link: CVE-2023-2751
Updated: 2024-08-02T06:33:05.263Z
Status : Modified
Published: 2023-06-19T11:15:10.600
Modified: 2024-12-12T01:20:40.913
Link: CVE-2023-2751
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.
EUVD