WordPress Gravity Forms Malware Arbitrary File Upload Vulnerability

  Severity: CRITICAL
  Advisory Date: MAY 31, 2016

  DESCRIPTION

Unrestricted file upload vulnerability in the Gravity forms plugin of Wordpress allows remote attackers to execute arbitrary code by uploading a crafted file with an executable extension.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1005434