Vulnerabilities > Pluck CMS > Pluckcms

DATE CVE VULNERABILITY TITLE RISK
2023-06-20 CVE-2020-20718 Unrestricted Upload of File with Dangerous Type vulnerability in Pluck-Cms Pluckcms 4.7.10
File Upload vulnerability in PluckCMS v.4.7.10 dev versions allows a remote attacker to execute arbitrary code via a crafted image file to the the save_file() parameter.
network
low complexity
pluck-cms CWE-434
critical
9.8
2019-07-16 CVE-2019-1010062 Unrestricted Upload of File with Dangerous Type vulnerability in Pluck-Cms Pluckcms
PluckCMS 4.7.4 and earlier is affected by: CWE-434 Unrestricted Upload of File with Dangerous Type.
network
low complexity
pluck-cms CWE-434
critical
9.8