VDB
CVE-2024-31210
CVE-2024-31210
PUBLISHED
CVSS 8.600000381469727 HIGH
PHP file upload bypass via Plugin installer
EPSS 1.20% · 79.3th percentile
Risk Scores
CVSS 4.0
8.600000381469727
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS Score
1.20%
79.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | wordpress | 4.6.0, 4.4.0, 4.5.0 |
| Bitnami | wordpress-multisite | 5.6.0, 4.3.0, 4.4.0 |
| Bitnami | wordpress | 0, 4.2.0, 4.4.0 |
| Bitnami | wordpress-multisite | 4.2.0, 4.3.0, 4.4.0 |
Timeline
- Jan 21, 1970 Security Advisory
- Jan 30, 2024 CVE Published
- Apr 5, 2024 EPSS Score
- Apr 15, 2024 PoC Published
- May 9, 2024 CVE Updated
- Jun 13, 2024 PoC Published
- Aug 18, 2024 PoC Published
- Aug 21, 2024 PoC Published
- Sep 1, 2024 PoC Published
- Oct 4, 2024 Coalition ESS Score
- Nov 19, 2024 PoC Published
- Jan 26, 2025 PoC Published