5.1
CVE-2013-5962
- EPSS 14.77%
- Veröffentlicht 30.09.2013 22:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Complete Gallery Manager <= 3.3.3 - Arbitrary File Upload
Unrestricted file upload vulnerability in frames/upload-images.php in the Complete Gallery Manager plugin before 3.3.4 rev40279 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in wp-content/[year]/[month]/.
Mögliche Gegenmaßnahme
Complete Gallery Manager for WordPress | Galleries: Update to version 3.3.4, or a newer patched version
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Envato ≫ Complete Gallery Manager Plugin Updaterev39177 Version <= 3.3.3
Envato ≫ Complete Gallery Manager Plugin Version1.0.0 Updaterev25273
Envato ≫ Complete Gallery Manager Plugin Version1.0.1 Updaterev25421
Envato ≫ Complete Gallery Manager Plugin Version1.0.2 Updaterev25487
Envato ≫ Complete Gallery Manager Plugin Version2.0.0 Updaterev27524
Envato ≫ Complete Gallery Manager Plugin Version2.0.1 Updaterev27876
Envato ≫ Complete Gallery Manager Plugin Version2.0.2 Updaterev28693
Envato ≫ Complete Gallery Manager Plugin Version2.0.3 Updaterev28734
Envato ≫ Complete Gallery Manager Plugin Version3.0.0 Updaterev29469
Envato ≫ Complete Gallery Manager Plugin Version3.0.1 Updaterev29536
Envato ≫ Complete Gallery Manager Plugin Version3.1.0 Updaterev30003
Envato ≫ Complete Gallery Manager Plugin Version3.1.1 Updaterev30900
Envato ≫ Complete Gallery Manager Plugin Version3.2.0 Updaterev31030
Envato ≫ Complete Gallery Manager Plugin Version3.2.1 Updaterev33197
Envato ≫ Complete Gallery Manager Plugin Version3.2.2 Updaterev33971
Envato ≫ Complete Gallery Manager Plugin Version3.2.3 Updaterev34390
Envato ≫ Complete Gallery Manager Plugin Version3.2.4 Updaterev34757
Envato ≫ Complete Gallery Manager Plugin Version3.2.5 Updaterev34942
Envato ≫ Complete Gallery Manager Plugin Version3.2.6 Updaterev36235
Envato ≫ Complete Gallery Manager Plugin Version3.2.7 Updaterev36257
Envato ≫ Complete Gallery Manager Plugin Version3.2.8 Updaterev36369
Envato ≫ Complete Gallery Manager Plugin Version3.3.0 Updaterev36620
Envato ≫ Complete Gallery Manager Plugin Version3.3.1 Updaterev38906
Envato ≫ Complete Gallery Manager Plugin Version3.3.2 Updaterev39009
Weitere Schwachstelleninformationen
SystemWordPress Plugin
≫
Produkt
Complete Gallery Manager for WordPress | Galleries
Version
[*, 3.3.4)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 14.77% | 0.962 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.1 | 4.9 | 6.4 |
AV:N/AC:H/Au:N/C:P/I:P/A:P
|
http://archives.neohapsis.com/archives/bugtraq/2013-09/0090.html
http://codecanyon.net/item/complete-gallery-manager-for-wordpress/2418606
http://packetstormsecurity.com/files/123303
http://secunia.com/advisories/54894
http://www.exploit-db.com/exploits/28377
http://www.vulnerability-lab.com/get_content.php?id=1080
https://exchange.xforce.ibmcloud.com/vulnerabilities/87172
https://www.wordfence.com/threat-intel/vulnerabilities/id/09c59fb5-8264-4277-a821-dbfee0900f64