Unrestricted file upload vulnerability in lazyseo.php in the Lazy SEO plugin 1.1.9 for WordPress allows remote attackers to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in lazy-seo/.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/87384 | vdb entry |
http://packetstormsecurity.com/files/123349 | exploit |
http://www.exploit-db.com/exploits/28452 | exploit |
http://osvdb.org/97662 | vdb entry |