plugin

Monsters Editor 10 For Wp Super Edit Vulnerabilities

1 known security issue reported for the Monsters Editor 10 For Wp Super Edit WordPress plugin. Most recent disclosed Aug 22, 2012.

1 critical

Running Monsters Editor 10 For Wp Super Edit on your site? Check whether your installed version is affected.

Scan your site free

Monsters Editor for WP Super Edit <= 1.1 - Arbitrary File Upload

critical

The Monsters Editor plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'test.html' page in versions up to, and including, 1.1. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code exec...

CVSS:
9.8
Affected:
up to 1.1
Fix:
No patched version reported
Disclosed:
Aug 22, 2012

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database