Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5mh3-8c2p-hgm8

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A Local File Inclusion vulnerability in the Nevma Adaptive Images plugin before 0.6.67 for WordPress allows remote attackers to retrieve arbitrary files via the $REQUEST['adaptive-images-settings']['source_file'] parameter in adaptive-images-script.php.

A Local File Inclusion vulnerability in the Nevma Adaptive Images plugin before 0.6.67 for WordPress allows remote attackers to retrieve arbitrary files via the $REQUEST['adaptive-images-settings']['source_file'] parameter in adaptive-images-script.php.

EPSS

Процентиль: 99%
0.85127
Высокий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
больше 6 лет назад

A Local File Inclusion vulnerability in the Nevma Adaptive Images plugin before 0.6.67 for WordPress allows remote attackers to retrieve arbitrary files via the $REQUEST['adaptive-images-settings']['source_file'] parameter in adaptive-images-script.php.

EPSS

Процентиль: 99%
0.85127
Высокий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-22