Vulnerabilities > Crelly Slider Project

DATE CVE VULNERABILITY TITLE RISK
2019-09-03 CVE-2019-15866 Unrestricted Upload of File with Dangerous Type vulnerability in Crelly Slider Project Crelly Slider
The crelly-slider plugin before 1.3.5 for WordPress has arbitrary file upload via a PHP file inside a ZIP archive to wp_ajax_crellyslider_importSlider.
network
low complexity
crelly-slider-project CWE-434
8.8