Back to search
CVE-2015-4703
Published: Jan 12, 2016
Modified: Aug 6, 2024
PUBLISHED
Description
Absolute path traversal vulnerability in mysqldump_download.php in the WordPress Rename plugin 1.0 for WordPress allows remote attackers to read arbitrary files via a full pathname in the dumpfname parameter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.vapid.dhs.org/advisory.php?v=127
x_refsource_MISC
[oss-security] 20150623 Arbitrary File download in wordpress plugin wp-instance-rename v1.0
mailing-list
x_refsource_MLIST
75394
vdb-entry
x_refsource_BID
https://wpvulndb.com/vulnerabilities/8055
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now