VendorsVideoWhispervideo_presentation3.31.17
Vulnerabilities

VideoWhisper Video Presentation for WordPress 3.31.17

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2015-9272
The videowhisper-video-presentation plugin 3.31.17 for WordPress allows remote attackers to execute arbitrary code because vp/vw_upload.php considers a file safe when "html" are the last four characters, as demonstrated by a .phtml file containing PHP code.
Published 2018-10-05 · Modified
9.8EPSS 0.050