Input validation vulnerability in HTML5 AV Manager 0.2.7

The HTML5 AV Manager plugin for WordPress is a software tool that is used to manage audio and video content on a website. Unfortunately, this plugin is vulnerable to malicious attacks due to a missing file type validation in the custom.php file of versions 0.2.7 and earlier. This means that unauthenticated attackers can upload any type of file to the website’s server, which could potentially allow them to gain control of the site.

Detected in:

HTML5 AV Manager open vulnerable versions: >= * <= 0.2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.