WordPress Plugin Wp-FileManager 'ajaxfilemanager.php' Arbitrary File Upload (1.2)
Description
WordPress Plugin Wp-FileManager is prone to a vulnerability that attackers can exploit to upload arbitrary PHP script code and execute it in the context of the webserver process. WordPress Plugin Wp-FileManager version 1.2 is vulnerable; other versions may also be affected.
Remediation
Update to the latest version