CVE-2017-1002000: Mobile-Friendly-App-Builder-By-Easytouch Project Mobile-Friendly-App-Builder-By-Easytouch

Critical severity, CVSS 9.8. EPSS: 27.4% chance of exploitation in the next 30 days.

Vulnerability in wordpress plugin mobile-friendly-app-builder-by-easytouch v3.0, The code in file ./mobile-friendly-app-builder-by-easytouch/server/images.php doesn't require authentication or check that the user is allowed to upload content.

Affected products

Published 2017-09-14. Last modified 2026-06-17.