ThreatPress

WordPress Vulnerabilities Database

Back

WordPress Ajax Search Lite Plugin <= 3.1 - Remote Code Execution

Product
Ajax Search Lite
Description
This vulnerability allows any registered user to execute any function he wants.
Solution
Upgrade the plugin.
Classification
Type Remote File Inclusion
OWASP Top 10 A1: Injection
References
Web Archive
CVE
Name CVE-N/A
Versions
Affected In <= 3.1
Fixed In 3.11
Disclosure date
2015-03-18
Credits
A. Samman