Vulnerabilities > WP Eventmanager > Event Banner

DATE CVE VULNERABILITY TITLE RISK
2021-05-06 CVE-2021-24252 Unrestricted Upload of File with Dangerous Type vulnerability in Wp-Eventmanager Event Banner
The Event Banner WordPress plugin through 1.3 does not verify the uploaded image file, allowing admin accounts to upload arbitrary files, such as .exe, .php, or others executable, leading to RCE.
network
low complexity
wp-eventmanager CWE-434
7.2