PT-2026-95696 · Deleeuw+1 · Share-One-Drive | Onedrive & Sharepoint Plugin For Wordpress+3
CVE-2026-93031
·
Published
2026-09-18
·
Updated
2026-09-18
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
The WP Cloud Plugins Use-your-Drive, Out-of-the-Box, Share-one-Drive, and Lets-Box plugins for WordPress are vulnerable to Arbitrary File Upload in all versions from 2.0 up to, and including, 3.8.3 via the download file to uploads function. This is due to the import action being registered for unauthenticated users via wp ajax nopriv , a missing capability check in can import(), and the imported file's extension and contents not being validated against get allowed mime types() before it is written to the uploads directory. This makes it possible for authenticated attackers, with subscriber-level access and above, to upload files that may be executable, which makes remote code execution possible.
Fix
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Share-One-Drive | Onedrive & Sharepoint Plugin For Wordpress
Use-Your-Drive | Google Drive Plugin For Wordpress
Wp Cloud Plugins - Box
Wp Cloud Plugins - Dropbox