Arbitrary File Upload Vulnerability in JobBoardWP WordPress Plugin

Arbitrary File Upload Vulnerability in JobBoardWP WordPress Plugin

CVE-2022-4061 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

The JobBoardWP WordPress plugin before 1.2.2 does not properly validate file names and types in its file upload functionalities, allowing unauthenticated users to upload arbitrary files such as PHP.

Learn more about our Wordpress Pen Testing.