Input validation vulnerability in Import any XML or CSV File to WordPress 3.7.3

The plugin “Import any XML or CSV File to WordPress” for WordPress can be hacked by allowing any type of files to be uploaded without any validation. This can be done by attackers who have admin-level access or higher, which can lead to the execution of remote code on the server of the affected site.

Detected in:

Import any XML or CSV File to WordPress fixed vulnerable versions: >= * < 3.7.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.