Vulnerabilities > CVE-2021-24311 - Unspecified vulnerability in External Media Project External Media

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
external-media-project

Summary

The wp_ajax_upload-remote-file AJAX action of the External Media WordPress plugin before 1.0.34 was vulnerable to arbitrary file uploads via any authenticated users.

Vulnerable Configurations

Part Description Count
Application
External_Media_Project
35