Логотип exploitDog
bind:CVE-2022-1476
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-1476

Количество 2

Количество 2

nvd логотип

CVE-2022-1476

больше 3 лет назад

The All-in-One WP Migration plugin for WordPress is vulnerable to arbitrary file deletion via directory traversal due to insufficient file validation via the ~/lib/model/class-ai1wm-backups.php file, in versions up to, and including, 7.58. This can be exploited by administrative users, and users who have access to the site's secret key.

CVSS3: 6.6
EPSS: Средний
github логотип

GHSA-qjj4-mxpm-p3m8

больше 3 лет назад

The All-in-One WP Migration plugin for WordPress is vulnerable to arbitrary file deletion via directory traversal due to insufficient file validation via the ~/lib/model/class-ai1wm-backups.php file, in versions up to, and including, 7.58. This can be exploited by administrative users, and users who have access to the site's secret key.

CVSS3: 6.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-1476

The All-in-One WP Migration plugin for WordPress is vulnerable to arbitrary file deletion via directory traversal due to insufficient file validation via the ~/lib/model/class-ai1wm-backups.php file, in versions up to, and including, 7.58. This can be exploited by administrative users, and users who have access to the site's secret key.

CVSS3: 6.6
35%
Средний
больше 3 лет назад
github логотип
GHSA-qjj4-mxpm-p3m8

The All-in-One WP Migration plugin for WordPress is vulnerable to arbitrary file deletion via directory traversal due to insufficient file validation via the ~/lib/model/class-ai1wm-backups.php file, in versions up to, and including, 7.58. This can be exploited by administrative users, and users who have access to the site's secret key.

CVSS3: 6.5
35%
Средний
больше 3 лет назад

Уязвимостей на страницу