WordPress Plugin WordPress PDF Light Viewer Command Injection - CVE-2021-24684 - Vulnerability Database

WordPress Plugin WordPress PDF Light Viewer Command Injection - CVE-2021-24684

High
Reference: CVE-2021-24684
Title: WordPress Plugin WordPress PDF Light Viewer Command Injection
Overview:

WordPress Plugin WordPress PDF Light Viewer is prone to a command injection vulnerability because it fails to properly validate user-supplied input. An attacker can exploit this issue to execute arbitrary commands within the context of the vulnerable application. WordPress Plugin WordPress PDF Light Viewer version 1.4.11 is vulnerable prior versions may also be affected.