CVE-2025-34083
Severity CVSS v4.0:
CRITICAL
Type:
CWE-20
Input Validation
Publication date:
09/07/2025
Last modified:
16/07/2025
Description
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as it is a duplicate of CVE-2020-36849.
Impact
Base Score 4.0
10.00
Severity 4.0
CRITICAL
References to Advisories, Solutions, and Tools
- https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/unix/webapp/wp_ait_csv_rce.rb
- https://packetstorm.news/files/id/160918
- https://vulncheck.com/advisories/wordpress-ait-csv-import-export-plugin-rce
- https://wpscan.com/vulnerability/36e699a4-91f2-426d-ba14-26036fbfeaea/
- https://www.acunetix.com/vulnerabilities/web/wordpress-plugin-ait-themes-csv-import-export-arbitrary-file-upload-3-0-3/
- https://www.ait-themes.club/csv-import-export-wordpress-plugin/
- https://www.fortiguard.com/encyclopedia/ips/49754
- https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/ait-csv-import-export/ait-csv-importexport-303-arbitrary-file-upload



