cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2012-1010,https://securityvulnerability.io/vulnerability/CVE-2012-1010,,"Unrestricted file upload vulnerability in actions.php in the AllWebMenus plugin before 1.1.8 for WordPress allows remote attackers to execute arbitrary PHP code by uploading a ZIP file containing a PHP file, then accessing it via a direct request to the file in an unspecified directory.",Wordpress,Allwebmenus Plugin,,,0.023660000413656235,false,,false,false,false,,false,false,2012-02-07T21:00:00.000Z,0 CVE-2012-1011,https://securityvulnerability.io/vulnerability/CVE-2012-1011,,"actions.php in the AllWebMenus plugin 1.1.8 for WordPress allows remote attackers to bypass intended access restrictions to upload and execute arbitrary PHP code by setting the HTTP_REFERER to a certain value, then uploading a ZIP file containing a PHP file, then accessing it via a direct request to the file in an unspecified directory.",Wordpress,Allwebmenus Plugin,,,0.037300001829862595,false,,false,false,false,,false,false,2012-02-07T21:00:00.000Z,0 CVE-2011-3981,https://securityvulnerability.io/vulnerability/CVE-2011-3981,,PHP remote file inclusion vulnerability in actions.php in the Allwebmenus plugin 1.1.3 for WordPress allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter.,Wordpress,Allwebmenus Plugin,,,0.01909000054001808,false,,false,false,false,,false,false,2011-10-04T10:00:00.000Z,0