The GEO my WP WordPress plugin before 4.5.0.2 does not prevent unauthenticated attackers from including arbitrary files in PHP's execution context, which leads to Remote Code Execution.
CVSS
No CVSS.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/95b532e0-1ffb-421e-b9c0-de03f89491d7/ | Exploit Third Party Advisory |
Configurations
History
27 May 2025, 21:06
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo | |
First Time |
Geomywp
Geomywp geo My Wordpress |
|
CPE | cpe:2.3:a:geomywp:geo_my_wordpress:*:*:*:*:*:wordpress:*:* | |
References | () https://wpscan.com/vulnerability/95b532e0-1ffb-421e-b9c0-de03f89491d7/ - Exploit, Third Party Advisory |
19 Aug 2024, 06:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-19 06:15
Updated : 2025-05-27 21:06
NVD link : CVE-2024-6330
Mitre link : CVE-2024-6330
JSON object : View
Products Affected
geomywp
- geo_my_wordpress
CWE