CVE-2024-4620

All FrameworksWordPressCWE-OtherCVE-2024-4620

CVE-2024-4620

State: PUBLISHED · Published: 2024-06-07 · Updated: 2024-08-01 · Assigner: WPScan
Description
The ARForms - Premium WordPress Form Builder Plugin WordPress plugin before 6.6 allows unauthenticated users to modify uploaded files in such a way that PHP code can be uploaded when an upload file input is included on a form
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/4xxx/CVE-2024-4620.json