Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The VideoWhisper videowhisper-video-conference-integration plugin 4.91.8 for WordPress allows remote attackers to execute arbitrary code because vc/vw_upload.php considers a file safe when "html" are the last four characters, as demonstrated by a .phtml file containing PHP code, a different vulnerability than CVE-2014-1905.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WordPress VideoWhisper videowhisper-video-conference-integration插件安全漏洞
Vulnerability Description
WordPress是WordPress软件基金会的一套使用PHP语言开发的博客平台,该平台支持在PHP和MySQL的服务器上架设个人博客网站。VideoWhisper Video Conference Integration是其中的一个视频会议插件。 WordPress VideoWhisper videowhisper-video-conference-integration插件4.91.8版本中存在安全漏洞。远程攻击者可利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A