Skip to content

Known CVE

WordPress Button Generator <2.3.3 - Remote File Inclusion

WordPress Button Generator before 2.3.3 within the wow-company admin menu page allows arbitrary file inclusion with PHP extensions (as well as with data:// or http:// protocols), thus leading to cross-site request forgery and remote code execution.

CVE-2021-25052

High2021CVSS 8.8CWE-352

cve2021 · wp-plugin · authenticated · wpscan · rfi · wp · wordpress · wow-company

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website