mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-14 15:08:03 +02:00
946 B
946 B
CVE-2021-24689
Description
The Contact Forms - Drag & Drop Contact Form Builder WordPress plugin through 1.0.5 allows high privilege users to download arbitrary files from the web server via a path traversal attack
POC
Reference
- https://wpscan.com/vulnerability/31824250-e0d4-4285-97fa-9880b363e075
- https://wpscan.com/vulnerability/31824250-e0d4-4285-97fa-9880b363e075
Github
No PoCs found on GitHub currently.