Critical Arbitrary File Upload Vulnerability in RealHomes CRM Plugin Affecting 30k+ Sites
PatchRealHomes CRM pluginRealHomes theme (bundled RealHomes CRM) Read at Patchstack
Below is the opening; the full story is at Patchstack.
From Patchstack
This blog post is about a Subscriber+ arbitrary file upload vulnerability in the RealHomes CRM. If you’re a RealHomes CRM user, please update to at least version 1.0.1.
This vulnerability was discovered and reported by Patchstack Alliance community member wackydawg.
✌️ Our users are protected from this vulnerability. Are yours?…
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.