CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 9.0. It affects WordPress. It may be remotely exploitable.
CVE
CVE-2008-2392
Severity
HIGH
CVSS
9
EPSS
4.28%
WordPress
Original NVD Description
Unrestricted file upload vulnerability in WordPress 2.5.1 and earlier might allow remote authenticated administrators to upload and execute arbitrary PHP files via the Upload section in the Write Tabs area of the dashboard.