CVE-2021-4330 | Envato Elements & Download and Template Kit Plugin installFreeTemplateKit/uploadTemplateKitZipFile unrestricted upload
A vulnerability, which was classified as critical, was found in Envato Elements & Download and Template Kit Plugin up to 1.0.13/2.0.10 on WordPress. Affected by this issue is the function installFreeTemplateKit/uploadTemplateKitZipFile. Such manipulation leads to unrestricted upload.
This vulnerability is documented as CVE-2021-4330. The attack can be executed remotely. There is not any exploit available.