mirror of
https://github.com/0xMarcio/cve.git
synced 2026-03-06 11:22:22 +00:00
743 B
743 B
CVE-2013-1916
Description
In WordPress Plugin User Photo 0.9.4, when a photo is uploaded, it is only partially validated and it is possible to upload a backdoor on the server hosting WordPress. This backdoor can be called (executed) even if the photo has not been yet approved.
POC
Reference
Github
No PoCs found on GitHub currently.