Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
CVE's Videos

← Terug naar CVE-database

CVE-2014-4941

MEDIUM · 5.0 CVSS Gepubliceerd: CWE-22

Beschrijving

Absolute path traversal vulnerability in Cross-RSS (wp-cross-rss) plugin 1.7 for WordPress allows remote attackers to read arbitrary files via a full pathname in the rss parameter to proxy.php.

Vendors

Cross-rss Plugin Project

Affected products

Wp-cross-rss

References