Unrestricted Upload of File with Dangerous Type vulnerability in Themefic Tourfic allows Upload a Web Shell to a Web Server. This issue affects Tourfic: from n/a through 2.15.3.
                
            References
                    Configurations
                    History
                    09 Jun 2025, 18:53
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
 | |
| References | () https://patchstack.com/database/wordpress/plugin/tourfic/vulnerability/wordpress-tourfic-plugin-2-15-3-arbitrary-file-upload-vulnerability?_s_id=cve - Third Party Advisory | |
| First Time | Themefic Themefic tourfic | |
| CPE | cpe:2.3:a:themefic:tourfic:*:*:*:*:*:wordpress:*:* | 
24 Jan 2025, 18:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-01-24 18:15
Updated : 2025-06-09 18:53
NVD link : CVE-2025-24650
Mitre link : CVE-2025-24650
CVE.ORG link : CVE-2025-24650
JSON object : View
Products Affected
                themefic
- tourfic
CWE
                
                    
                        
                        CWE-434
                        
            Unrestricted Upload of File with Dangerous Type
