mirror of
https://github.com/0xMarcio/cve.git
synced 2026-02-12 18:42:46 +00:00
19 lines
1014 B
Markdown
19 lines
1014 B
Markdown
### [CVE-2021-24161](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-24161)
|
|

|
|

|
|

|
|
&color=brightgreen)
|
|
|
|
### Description
|
|
|
|
In the Reponsive Menu (free and Pro) WordPress plugins before 4.0.4, attackers could craft a request and trick an administrator into uploading a zip archive containing malicious PHP files. The attacker could then access those files to achieve remote code execution and further infect the targeted site.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://wpscan.com/vulnerability/efca27e0-bdb6-4497-8330-081f909d6933
|
|
|
|
#### Github
|
|
- https://github.com/20142995/nuclei-templates
|
|
|