CVE-2015-1000013

HIGH EXPLOITED

WordPress Plugin csv2wpec-coupon v1.1 - RCE

Title source: llm
STIX 2.1

Description

Remote file upload vulnerability in wordpress plugin csv2wpec-coupon v1.1

References (2)

Core 2
Core References
Exploit, Third Party Advisory x_refsource_misc
http://www.vapidlabs.com/advisory.php?v=153
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/94497

Scores

CVSS v3 7.8
EPSS 0.0604
EPSS Percentile 90.8%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

VulnCheck KEV 2021-01-26
CWE
CWE-434
Status published
Products (1)
csv2wpec-coupon_project/csv2wpec-coupon 1.1
Published Oct 06, 2016
Tracked Since Feb 18, 2026