cleantalk
Vulnerabilities and Security Researches

SupportCandy – Helpdesk & Customer Support Ticket System, CVE-2019-11223

CVE, Research URL

CVE-2019-11223

Published on
Apr 18, 2019
Research Description
An Unrestricted File Upload Vulnerability in the SupportCandy plugin through 2.0.0 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension.
Affected versions
max 2.0.1.
Status
vulnerable