CVE-2014-8739 | Creative Contact Form Plugin up to 1.0.0/2.0.1/6.4.4 on WordPress UploadHandler.php unrestricted upload (Exploit 35057 / EDB-35057)
A vulnerability was found in Creative Contact Form Plugin up to 1.0.0/2.0.1/6.4.4 on WordPress. It has been classified as critical. Affected is an unknown function of the file server/php/UploadHandler.php. The manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2014-8739. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.