Input validation vulnerability in Brandfolder – Digital Asset Management Simplified. 3.0.1

The Brandfolder – Digital Asset Management Simplified – plugin for WordPress has a security vulnerability which affects versions 3.0 and earlier. If exploited, it can allow an unauthenticated attacker to access and execute code on the server remotely. This vulnerability is connected to the ‘wp_abspath’ parameter.

Detected in:

Brandfolder – Digital Asset Management Simplified. open vulnerable versions: >= * < 3.0.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.