Ultimate Addons for Contact Form 7 <= 3.5.12 - Authenticated (Administrator+) Arbitrary File Upload via 'save_options'

CVE Details

Basic Information

Title Ultimate Addons for Contact Form 7 <= 3.5.12 - Authenticated (Administrator+) Arbitrary File Upload via 'save_options'
Type cve
Published 2025-06-18T11:16:31.235Z
Last Seen

Product Information

Vendor themefic
Product Ultra Addons for Contact Form 7
Version *

CVSS Information

Base Score 7.2 (HIGH)
Attack Vector CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Confidentiality Impact
Integrity Impact
Availability Impact

AI Analysis

AI Description The Ultra Addons for Contact Form 7 plugin allows authenticated attackers with admin access to upload arbitrary files, potentially enabling remote code execution. This is due to missing file validation in the ‘save_options’ function. The vulnerability affects versions up to 3.5.12.
AI Severity High
Vendor themefic
Product Ultra Addons for Contact Form 7
Affected Version 3.5.12

Affected Products

  • themefic Ultra Addons for Contact Form 7 *

Additional Information

CVE List
CWE List CWE-434
Bulletin Family

Description

The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ‘save_options’ function in all versions up to, and including, 3.5.12. This makes it possible for authenticated attackers, with Administrator-level access and above, to upload arbitrary files on the affected site’s server which may make remote code execution possible.

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.