CVE Published: 05/04/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: WPScan |
Vendor: ExpressTech |
Product: Responsive Menu – Create Mobile-Friendly Menu Status : PUBLISHED
CVE-2021-24161 Description
In the Reponsive Menu (free and Pro) WordPress plugins before 4.0.4, attackers could craft a request and trick an administrator into uploading a zip archive containing malicious PHP files. The attacker could then access those files to achieve remote code execution and further infect the targeted site.