Vulnerabilities
Anyone can access pulse/admin/inc/gal-sort.php.
1 MIN READ
Vulnerabilities
Anyone can access pulse/admin/inc/gal-sort.php.
1 MIN READ
Vulnerabilities
By default .swf files in Media Manager are allowed.
1 MIN READ
Vulnerabilities
Regular user (created using wp-login.php?action=register) can run backup functionality.
1 MIN READ
Vulnerabilities
Link to created backup file is saved in public log.
1 MIN READ
Vulnerabilities
`Cart66Ajax
1 MIN READ
Vulnerabilities
$_POST['text'] is not escaped.
2 MIN READ
Vulnerabilities
Anyone can change plugin settings.
1 MIN READ
Vulnerabilities
Datas are not escaped correctly.
1 MIN READ
From 0 to pentesting hero
The functionality of file upload is a key place where we should pay special attention to. If the attacker successfully sends and executes a malicious file, the whole server may be taken over.
12-03-2019
3 MIN READ