The rtMedia for WordPress, BuddyPress and bbPress WordPress plugin before 4.6.16 loads the contents of the import file in an unsafe manner, leading to remote code execution by privileged users.
References
| Link | Resource |
|---|---|
| https://wpscan.com/vulnerability/db5d41fc-bcd3-414f-aa99-54d5537007bc | Exploit Third Party Advisory |
Configurations
History
04 Jan 2024, 18:41
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Rtcamp
Rtcamp rtmedia |
|
| CPE | cpe:2.3:a:rtcamp:rtmedia:*:*:*:*:*:wordpress:*:* | |
| CWE | NVD-CWE-noinfo | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.2 |
| References | () https://wpscan.com/vulnerability/db5d41fc-bcd3-414f-aa99-54d5537007bc - Exploit, Third Party Advisory |
26 Dec 2023, 20:34
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-12-26 19:15
Updated : 2024-01-04 18:41
NVD link : CVE-2023-5939
Mitre link : CVE-2023-5939
JSON object : View
Products Affected
rtcamp
- rtmedia
CWE
