C’è una vulnerabilità XSS nel Gestore mndpsingh287 file plugin per WordPress 3.0 tramite il parametro public_path page = wp_file_manager_root. |
https://ansawaf.blogspot.com/2019/04/file-manager-plugin-wordpress-plugin.html https://wordpress.org/plugins/wp-file-manager/#developers https://wpvulndb.com/vulnerabilities/9614 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16967 |
Vulnerabilità: CVE-2018-16967
