NiteoThemes CMP – Coming Soon & Maintenance
cpe:2.3:a:niteothemes:cmp:*:*:*:*:wordpress:*:*
- <= 4.1.14
A vulnerability allowing unrestricted file uploads has been identified in the NiteoThemes CMP – Coming Soon & Maintenance plugin, affecting versions through 4.1.13. This vulnerability could be exploited to upload malicious files, potentially leading to remote code execution.
Exploitation of this vulnerability could allow a malicious actor to upload any type of file to the website, including backdoors that could be executed to gain further access.
Users of the NiteoThemes CMP – Coming Soon & Maintenance plugin should update to version 4.1.15 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.