Record summary

CVE-2017-1002000 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.

Description

Vulnerability in wordpress plugin mobile-friendly-app-builder-by-easytouch v3.0, The code in file ./mobile-friendly-app-builder-by-easytouch/server/images.php doesn't require authentication or check that the user is allowed to upload content.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE ListBefore 3.0affected

Proofs of concept

1

Catalogued exploits

ExploitDBMultiple WordPress Plugins - Arbitrary File UploadExploitDB exploitby The MartianNot analyzed1 file

linked to 5 vulnerabilities

ExploitDB

PoC details

References

6