Vulnerabilities > CVE-2023-2751 - Unspecified vulnerability in Upload Resume Project Upload Resume

047910
CVSS 5.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
LOW
Availability impact
NONE
network
low complexity
upload-resume-project

Summary

The Upload Resume WordPress plugin through 1.2.0 does not validate the captcha parameter when uploading a resume via the resume_upload_form shortcode, allowing unauthenticated visitors to upload arbitrary media files to the site.

Vulnerable Configurations

Part Description Count
Application
Upload_Resume_Project
1