Directory traversal vulnerability in the Tom M8te (tom-m8te) plugin 1.5.3 for WordPress allows remote attackers to read arbitrary files via the file parameter to tom-download-file.php.
References
Link | Resource |
---|---|
http://codevigilant.com/disclosure/wp-plugin-tom-m8te-local-file-inclusion | Exploit |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2014-08-06 19:55
Updated : 2014-08-07 13:25
NVD link : CVE-2014-5187
Mitre link : CVE-2014-5187
CVE.ORG link : CVE-2014-5187
JSON object : View
Products Affected
tom_m8te_plugin_project
- tom-m8te_plugin
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')