CVE-2019-1010209

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
23/07/2019
Last modified:
09/10/2019

Description

GoUrl.io GoURL Wordpress Plugin 1.4.13 and earlier is affected by: CWE-434. The impact is: unauthenticated/unzuthorized Attacker can upload executable file in website. The component is: gourl.php#L5637. The fixed version is: 1.4.14.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gorul:gourl:*:*:*:*:*:wordpress:*:* 1.4.13 (including)