AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-5807

HIGH · CVSS 7.2 EPSS 0.65%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-07-30 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.2. It affects WordPress.

CVE
CVE-2024-5807
Severity
HIGH
CVSS
7.2
EPSS
0.65%
WordPress

Original NVD Description

The Business Card WordPress plugin through 1.0.0 does not prevent high privilege users like administrators from uploading malicious PHP files, which could allow them to run arbitrary code on servers hosting their site, even in MultiSite configurations.

Related CVEs

Other vulnerabilities affecting the same vendor(s)