WordPress eaSYNC plugin” (versions <= 1.1.15) unauthenticated arbitrary file upload vulnerability

Details

Unauthenticated arbitrary file upload vulnerability discovered in the WordPress eaSYNC plugin (version <= 1.1.15).

solution

Update the WordPress eaSYNC plugin to the latest version available (at least 1.1.16).

Sources.

Free Booking Plugin for Hotels, Restaurants and Car Rentals – eaSYNC Booking
Simplify a Customer’s Booking Experience with eaSYNC Booking — a WordPress Booking Plugin for Hotels, Restaurants, and Car Rentals!

脆弱性情報を受け取る