CyberRota Analysis
AI-GeneratedThe WP Cookie Notice for GDPR, CCPA & ePrivacy Consent plugin versions up to 4.4.1 are vulnerable to an unrestricted file upload flaw, enabling attackers to upload and execute malicious files on the server. This critical vulnerability poses a severe risk, as it could lead to unauthorized access, data breaches, or complete server compromise. Organizations using this plugin should prioritize immediate remediation to mitigate potential exploitation.
Original NVD Description
Unrestricted Upload of File with Dangerous Type vulnerability in WP Legal Pages WP Cookie Notice for GDPR, CCPA & ePrivacy Consent allows Using Malicious Files. This issue affects WP Cookie Notice for GDPR, CCPA & ePrivacy Consent: from n/a through 4.4.1.