Description
An arbitrary file upload vulnerability in the plugin manager of LimeSurvey v5.4.15 allows attackers to execute arbitrary code via a crafted PHP file.
Remediation
References
Related Vulnerabilities
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-21027)
WordPress Plugin WooCommerce Email Test Information Disclosure (1.5)
WordPress Plugin Timber Cross-Site Scripting (1.2.2)
WordPress Plugin Newsletter Subscription Form Possible Remote Code Execution (1.1.2)
WordPress Plugin GD bbPress Attachments Multiple Vulnerabilities (2.2)