Unrestricted file upload vulnerability in lazyseo.php in the Lazy SEO plugin 1.1.9 for WordPress allows remote attackers to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in lazy-seo/.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Lazy_seo | Danny_morris | 1.1.9 (including) | 1.1.9 (including) |