Extension WordPress
Vulnérabilités AllWebMenus WordPress Menu Plugin
Cette page rassemble les failles publiées pour AllWebMenus WordPress Menu Plugin, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de AllWebMenus WordPress Menu Plugin
3 fiches
AllWebMenus WordPress Menu Plugin <= 1.1.8 – Arbitrary File Upload
The "AllWebMenus WordPress Menu Plugin" plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the actions.php file in versions up to, and including, 1.1.8. This makes it possible for unauthenticated attackers…
*-1.1.8
1.1.9
22/01/2012
AllWebMenus WordPress Menu Plugin < 1.1.9 – Arbitrary File Upload
Unrestricted file upload vulnerability in actions.php in the AllWebMenus plugin before 1.1.9 for WordPress allows remote attackers to execute arbitrary PHP code by uploading a ZIP file containing a PHP file, then accessing it via a direct request…
[*, 1.1.9)
1.1.9
19/01/2012
AllWebMenus WordPress Menu Plugin <= 1.1.3 – Remote File Inclusion
PHP remote file inclusion vulnerability in actions.php in the Allwebmenus plugin 1.1.3 for WordPress allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter.
*-1.1.3
1.1.4
19/09/2011
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.