Input validation vulnerability in Uploader 1.0.4

The Uploader plugin for WordPress, up to and including version 1.0.4, has a vulnerability that allows unauthenticated attackers to upload files to the affected website’s server. This could lead to remote code execution, meaning attackers could run malicious code on the website.

Detected in:

Uploader open vulnerable versions: >= * <= 1.0.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.