Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2023-4311
Disclosure Date: December 18, 2023 (last updated December 22, 2023)
The Vrm 360 3D Model Viewer WordPress plugin through 1.2.1 is vulnerable to arbitrary file upload due to insufficient checks in a plugin shortcode.
0
Attacker Value
Unknown
CVE-2023-5177
Disclosure Date: October 16, 2023 (last updated October 21, 2023)
The Vrm 360 3D Model Viewer WordPress plugin through 1.2.1 exposes the full path of a file when putting in a non-existent file in a parameter of the shortcode.
0