The Adning Advertising plugin for WordPress versions below 1.5.6 is vulnerable to arbitrary file upload, allowing attackers to upload malicious files to the server.
id: CVE-2020-36728
info:
name: WordPress Plugin Adning Advertising < 1.5.6 - Arbitrary File Uploa
...