CVE-2024-56046

CRITICAL WAF: Medium
CVSS 9.8 Published: 2024-12-31
CWE-434

Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS allows Upload a Web Shell to a Web Server.This issue affects WPLMS: from n/a through 1.9.9.

WAF Coverage Analysis

Unrestricted File Upload Medium WAF Coverage

OWASP: A04:2021 Insecure Design

930xxx - Local File Inclusion

Affected Software

VendorProductVersion
vibethemeswordpress_learning_management_systemup to 1.9.9.1

References

Back to CVE Database