Vulnerabilities > College Publisher Import Project

DATE CVE VULNERABILITY TITLE RISK
2021-05-06 CVE-2021-24254 Unrestricted Upload of File with Dangerous Type vulnerability in College Publisher Import Project College Publisher Import
The College publisher Import WordPress plugin through 0.1 does not check for the uploaded CSV file to import, allowing high privilege users to upload arbitrary files, such as PHP, leading to RCE.
network
low complexity
college-publisher-import-project CWE-434
6.5