plugin

Pdf Light Viewer Vulnerabilities

1 known security issue reported for the Pdf Light Viewer WordPress plugin. Most recent disclosed Sep 15, 2021.

1 critical

Running Pdf Light Viewer on your site? Check whether your installed version is affected.

Scan your site free

PDF Light Viewer <= 1.4.11 - Authenticated Command Injection

critical

The WordPress PDF Light Viewer Plugin WordPress plugin before 1.4.12 allows users with Author roles to execute arbitrary OS command on the server via OS Command Injection when invoking Ghostscript.

CVSS:
9.9
Affected:
up to 1.4.11
Fixed in:
1.4.12
Disclosed:
Sep 15, 2021

CVE-2021-24684 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database