cleantalk
Vulnerabilities and Security Researches

ImageMagick Engine, 6cb0395475935241d90680a0eb6309da4bf0ab1a

Application

ImageMagick Engine

Published on
Oct 19, 2022
Research Description
ImageMagick Engine [imagemagick-engine] < 1.7.6 WordPress ImageMagick Engine plugin <= 1.7.6 - Auth. Remote Code Execution (RCE) vulnerability Auth. Remote Code Execution (RCE) vulnerability discovered by ABDO10 in WordPress ImageMagick Engine plugin (versions <= 1.7.6). No patched version is available. Version 1.7.6 only added a nonce token to fix the CSRF vulnerability.
Affected versions
Min -, max 1.7.6.
Status
vulnerable