CVE-2024-52429

Unrestricted Upload of File with Dangerous Type vulnerability in Anton Hoelstad WP Quick Setup allows Upload a Web Shell to a Web Server.This issue affects WP Quick Setup: from n/a through 2.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:antonhoelstad:wp_quick_setup:*:*:*:*:*:wordpress:*:*

History

20 Nov 2024, 15:28

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 9.9
v2 : unknown
v3 : 8.8
References () https://patchstack.com/database/vulnerability/wp-quick-setup/wordpress-wp-quick-setup-plugin-2-0-arbitrary-plugin-and-theme-installation-to-remote-code-execution-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/wp-quick-setup/wordpress-wp-quick-setup-plugin-2-0-arbitrary-plugin-and-theme-installation-to-remote-code-execution-vulnerability?_s_id=cve - Third Party Advisory
First Time Antonhoelstad wp Quick Setup
Antonhoelstad
CPE cpe:2.3:a:antonhoelstad:wp_quick_setup:*:*:*:*:*:wordpress:*:*

18 Nov 2024, 17:11

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de carga sin restricciones de archivos con tipo peligroso en Anton Hoelstad WP Quick Setup permite cargar un shell web a un servidor web. Este problema afecta a WP Quick Setup: desde n/a hasta 2.0.

18 Nov 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-18 15:15

Updated : 2024-11-20 15:28


NVD link : CVE-2024-52429

Mitre link : CVE-2024-52429

CVE.ORG link : CVE-2024-52429


JSON object : View

Products Affected

antonhoelstad

  • wp_quick_setup
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type