CVE-2024-5807
HIGHDescription
The Business Card WordPress plugin through 1.0.0 does not prevent high privilege users like administrators from uploading malicious PHP files, which could allow them to run arbitrary code on servers hosting their site, even in MultiSite configurations.
Is your site exposed to CVE-2024-5807?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Affected Products
| Vendor | Product |
|---|---|
| esterox | business_card |
References
Frequently Asked Questions
What is CVE-2024-5807? +
How severe is CVE-2024-5807? +
What products are affected by CVE-2024-5807? +
How do I check if I'm vulnerable to CVE-2024-5807? +
Related Vulnerabilities
The Business Card WordPress plugin through 1.0.0 does not have CSRF checks in some places, which could allow attackers to …
The Business Card WordPress plugin through 1.0.0 does not have CSRF checks in some places, which could allow attackers to …
The Business Card WordPress plugin through 1.0.0 does not have CSRF checks in some places, which could allow attackers to …
The Business Card WordPress plugin through 1.0.0 does not have CSRF checks in some places, which could allow attackers to …