This HTTP Headers WordPress plugin before 1.18.11 allows arbitrary data to be written to arbitrary files, leading to a Remote Code Execution vulnerability.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Http_headers |
Riverside |
* |
1.18.11 (excluding) |
References