Live Vulnerability Intelligence
Threat Database
Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.
Threat Entry
Updated 2024-11-21
CVE-2021-24145 - Arbitrary File Upload In The Modern Events Calendar Lite Plugin
Arbitrary file upload in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly check the imported file, allowing PHP ones to be uploaded by administrator by using the 'text/csv' content-type in the request.
PLUGIN
Arbitrary File Upload In The Modern Events Calendar Lite
CVE-2021-24145
Risk Score
