WordPress WP Cost Estimation plugin < 9.644 - Arbitrary File Upload and Delete vulnerability
- WP Cost Estimation & Payment Forms Builder
- Arbitrary File Upload and Delete vulnerability found by Wordfence in WordPress WP Cost Estimation (versions <9.644).
- All versions older than 9.644 vulnerable and you should update to the latest available version (at least to 9.644).
Type Arbitrary File Upload
OWASP Top 10 A4: Insecure Direct Object References
- Name CVE-N/A
Fixed In 9.644
- Disclosure date