ThreatPress

WordPress Vulnerabilities Database

Back

WordPress Lazy Load Plugin <= 0.7.5 - Remote File Inclusion

Product
Lazy Load
Description
This vulnerability allows any visitor to upload any kind of file in your website.
Solution
Update the plugin.
Classification
Type Remote File Inclusion
OWASP Top 10 A1: Injection
References
SecuPress
CVE
Name CVE-N/A
Versions
Affected In <= 0.7.5
Fixed In 1.0
Disclosure date
2015-09-02
Submitter
ThreatPress