cleantalk
Vulnerabilities and Security Researches

GEO my WordPress, CVE-2024-6330

CVE, Research URL

CVE-2024-6330

Application

GEO my WordPress

Published on
Aug 19, 2024
Research Description
The GEO my WP WordPress plugin before 4.5.0.2 does not prevent unauthenticated attackers from including arbitrary files in PHP's execution context, which leads to Remote Code Execution.
Affected versions
max 4.5.0.2.
Status
vulnerable