Strategery Migrations <= 1.0 - Unauthenticated Arbitrary File Deletion
highThe Strategery Migrations plugin for WordPress is vulnerable to Arbitrary File Deletion in all versions up to, and including, 1.0. This makes it possible for unauthenticated attackers to delete arbitrary files on the server which can lead to remote code execution.
- CVSS:
- 7.5
- Affected:
- up to 1.0
- Fix:
- No patched version reported
- Disclosed:
- Jun 6, 2024