A vulnerability was found in User Profile Picture Plugin up to 2.5.x on WordPress (WordPress Plugin) and classified as critical. This issue affects the function upload_image
. Upgrading to version 2.6.0 eliminates this vulnerability.
User Profile Picture Plugin up to 2.5.x on WordPress upload_image access control
- Virtual Patching
- August 2, 2021
- 4:05 pm
CVE-2023-2825 : GITLAB COMMUNITY EDITION/ENTERPRISE EDITION 16.0.0 PUBLIC PROJECT PATH TRAVERSAL
Description An issue has been discovered in GitLab CE/EE affecting only version 16.0.0. An unauthenticated malicious user can use a
CVE-2023-2851 : AGT TECH CEPPATRON SQL INJECTION
Description Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in AGT Tech Ceppatron allows Command
CVE-2023-2868 : BARRACUDA EMAIL SECURITY GATEWAY UP TO 9.2.0.006 TAR FILE COMMAND INJECTION
Description A remote command injection vulnerability exists in the Barracuda Email Security Gateway (appliance form factor only) product effecting versions