Vulnerability CVE-2023-4238


Published: 2023-09-25

Description:
The Prevent files / folders access WordPress plugin before 2.5.2 does not validate files to be uploaded, which could allow attackers to upload arbitrary files such as PHP on the server.

Type:

CWE-434

(Unrestricted Upload of File with Dangerous Type)

 References:
https://wpscan.com/vulnerability/53816136-4b1a-4b7d-b73b-08a90c2a638f

Copyright 2026, cxsecurity.com

 

Back to Top