Vulnerabilities > Najeebmedia > N Media File Uploader > Medium

DATE CVE VULNERABILITY TITLE RISK
2014-09-26 CVE-2014-5324 Code Injection vulnerability in Najeebmedia N-Media File Uploader 3.0/3.1/3.2
Unrestricted file upload vulnerability in the N-Media file uploader plugin before 3.4 for WordPress allows remote authenticated users to execute arbitrary PHP code by leveraging Author privileges to store a file.
network
low complexity
najeebmedia CWE-94
6.5