Unrestricted Upload of File with Dangerous Type vulnerability in borisolhor Drop Uploader for CF7 - Drag&Drop File Uploader Addon drop-uploader-for-contact-form-7-dragdrop-file-uploader-addon allows Upload a Web Shell to a Web Server.This issue affects Drop Uploader for CF7 - Drag&Drop File Uploader Addon: from n/a through <= 2.4.1.
Metrics
Affected Vendors & Products
History
Thu, 06 Nov 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Borisolhor
Borisolhor drop Uploader For Cf7 Wordpress Wordpress wordpress |
|
| Vendors & Products |
Borisolhor
Borisolhor drop Uploader For Cf7 Wordpress Wordpress wordpress |
Thu, 06 Nov 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unrestricted Upload of File with Dangerous Type vulnerability in borisolhor Drop Uploader for CF7 - Drag&Drop File Uploader Addon drop-uploader-for-contact-form-7-dragdrop-file-uploader-addon allows Upload a Web Shell to a Web Server.This issue affects Drop Uploader for CF7 - Drag&Drop File Uploader Addon: from n/a through <= 2.4.1. | |
| Title | WordPress Drop Uploader for CF7 - Drag&Drop File Uploader Addon Plugin <= 2.4.1 - Arbitrary File Upload Vulnerability | |
| Weaknesses | CWE-434 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-11-06T15:54:03.506Z
Reserved: 2025-06-27T11:58:53.298Z
Link: CVE-2025-53283
No data.
Status : Awaiting Analysis
Published: 2025-11-06T16:15:56.180
Modified: 2025-11-06T19:45:09.883
Link: CVE-2025-53283
No data.