Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2mm8-gjg2-whmx

Опубликовано: 15 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

The True Ranker plugin <= 2.2.2 for WordPress allows arbitrary files, including sensitive configuration files such as wp-config.php, to be accessed via the src parameter found in the ~/admin/vendor/datatables/examples/resources/examples.php file.

The True Ranker plugin <= 2.2.2 for WordPress allows arbitrary files, including sensitive configuration files such as wp-config.php, to be accessed via the src parameter found in the ~/admin/vendor/datatables/examples/resources/examples.php file.

EPSS

Процентиль: 100%
0.91056
Критический

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
около 4 лет назад

The True Ranker plugin <= 2.2.2 for WordPress allows arbitrary files, including sensitive configuration files such as wp-config.php, to be accessed via the src parameter found in the ~/admin/vendor/datatables/examples/resources/examples.php file.

EPSS

Процентиль: 100%
0.91056
Критический

Дефекты

CWE-22