Input validation vulnerability in immonex Kickstart 1.11.6

The immonex Kickstart plugin for WordPress has a security issue in versions 1.11.6 and below. This vulnerability allows attackers with contributor-level access or higher to access and run any files on the server, including PHP files. This can be used to get around security measures, steal important information, or execute code, even if the file is an image or other seemingly harmless type.

Detected in:

immonex Kickstart fixed vulnerable versions: >= * <= 1.11.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.