9Kas
CVE-2024-10801 | vanquish WordPress User Extra Fields Plugin up to 16.5 on WordPress ajax_manage_file_chunk_upload unrestricted upload
A vulnerability classified as critical has been found in vanquish WordPress User Extra Fields Plugin up to 16.5 on WordPress. Affected is the functionajax_manage_file_chunk_upload
. The manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2024-10801. It is possible to launch the attack remotely. There is no exploit available.