CVE-2012-1205 Information

Share on:

Description

PHP remote file inclusion vulnerability in relocate-upload.php in Relocate Upload plugin before 0.20 for WordPress allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter.

Reference

http://osvdb.org/79250 http://plugins.trac.wordpress.org/changeset/504380/relocate-upload http://secunia.com/advisories/47976 http://wordpress.org/extend/plugins/relocate-upload/changelog/ http://www.securityfocus.com/bid/49693