VendorsLiknoallwebmenus_plugin1.1.3
Vulnerabilities

Likno Allwebmenus Plugin 1.1.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2011-3981
PHP remote file inclusion vulnerability in actions.php in the Allwebmenus plugin 1.1.3 for WordPress allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter.
Published 2011-10-04 · Modified
7.51 PoCEPSS 0.101
CVE-2012-1010
Unrestricted file upload vulnerability in actions.php in the AllWebMenus plugin before 1.1.8 for WordPress allows remote attackers to execute arbitrary PHP code by uploading a ZIP file containing a PHP file, then accessing it via a direct request to the file in an unspecified directory.
Published 2012-02-07 · Modified
7.51 PoCEPSS 0.089