Untriaged
Permalink
CVE-2023-40204
9.1 CRITICAL
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): HIGH
- User interaction (UI): NONE
- Scope (S): CHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): HIGH
WordPress Folders Plugin <= 2.9.2 is vulnerable to Arbitrary File Upload
Unrestricted Upload of File with Dangerous Type vulnerability in Premio Folders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, File Manager.This issue affects Folders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, File Manager: from n/a through 2.9.2.
References
- https://patchstack.com/database/vulnerability/folders/wordpress-folders-plugin-… vdb-entry
- https://patchstack.com/database/vulnerability/folders/wordpress-folders-plugin-… x_transferred vdb-entry
- https://patchstack.com/database/vulnerability/folders/wordpress-folders-plugin-… vdb-entry
- https://patchstack.com/database/vulnerability/folders/wordpress-folders-plugin-… x_transferred vdb-entry
Affected products
folders
- =<2.9.2
Matching in nixpkgs
pkgs.sweet-folders
Folders icons for Sweet GTK theme
-
nixos-unstable -
- nixpkgs-unstable 0-unstable-2025-02-15
pkgs.papirus-folders
Tool to change papirus icon theme color
-
nixos-unstable -
- nixpkgs-unstable 1.14.0
pkgs.platform-folders
C++ library to look for standard platform directories so that you do not need to write platform-specific code
-
nixos-unstable -
- nixpkgs-unstable 4.3.0
pkgs.catppuccin-papirus-folders
Soothing pastel theme for Papirus Icon Theme folders
-
nixos-unstable -
- nixpkgs-unstable 0-unstable-2024-08-06
pkgs.vscode-extensions.moshfeu.compare-folders
Extension allows you to compare folders, show the diffs in a list and present diff in a splitted view side by side
-
nixos-unstable -
- nixpkgs-unstable 0.25.3
Package maintainers
-
@rubyowo Rei Star <perhaps-you-know@what-is.ml>
-
@aacebedo Alexandre Acebedo <alexandre@acebedo.fr>
-
@D3vil0p3r Antonio Voza <vozaanthony@gmail.com>