WordPress security by component
AR For WordPress
Plugin description
AR For WordPress is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Oct 28, 2024; the highest published CVSS base score is 10.
Plugin slug:
arLatest vulnerability
CVE-2024-50496: AR For WordPress: Dangerous file upload
AR For WordPress is affected by dangerous file upload. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
| Safe version |
|
||
|---|---|---|---|
| Oct 28, 2024 |
CVE-2024-50496
AR For WordPress: Dangerous file upload
AR For WordPress is affected by dangerous file upload. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
|
See mitigation notes |
CVE10.0
NVD10.0
|