Compute Links [compute-links] <= 1.2.1 (unfixed + closed)
unknown
[en] Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Hamed Naderfar Compute Links allows PHP Remote File Inclusion.This issue affects Compute Links: from n/a through 1.2.1.
- Affected:
- up to 1.2.1
- Fix:
- No patched version reported
- Disclosed:
- Aug 19, 2024
CVE-2024-43261 on NVD →
Compute Links <= 1.2.1 - Unauthenticated Remote File Inclusion
critical
The Compute Links plugin for WordPress is vulnerable to Remote File Inclusion in all versions up to, and including, 1.2.1. This makes it possible for unauthenticated attackers to include remote files on the server, resulting in code execution.
- CVSS:
- 9.8
- Affected:
- up to 1.2.1
- Fix:
- No patched version reported
- Disclosed:
- Aug 12, 2024
CVE-2024-43261 on NVD →
Protect your WordPress site
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free
← Back to the vulnerability database