Arbitrary File Upload Vulnerability in Social Media Widget Plugin for WordPress

Arbitrary File Upload Vulnerability in Social Media Widget Plugin for WordPress

CVE-2013-1949 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:P/A:N

Social Media Widget (social-media-widget) plugin 4.0 for WordPress contains an externally introduced modification (Trojan Horse), which allows remote attackers to force the upload of arbitrary files.

Learn more about our Wordpress Pen Testing.