plugin

Media Net Ads Manager Vulnerabilities

1 known security issue reported for the Media Net Ads Manager WordPress plugin. Most recent disclosed Jul 26, 2024.

1 high

Running Media Net Ads Manager on your site? Check whether your installed version is affected.

Scan your site free

Media.net Ads Manager <= 2.10.13 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Upload

high

The Media.net Ads Manager plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation and missing capability check in the 'sendMail' function in all versions up to, and including, 2.10.13. This makes it possible for authenticated attackers, with subscriber-level and above permission...

CVSS:
8.8
Affected:
up to 2.10.13
Fix:
No patched version reported
Disclosed:
Jul 26, 2024

CVE-2024-6431 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database