Ajax Store Locator <= 1.2 - Arbitrary File Download

Affects Plugin

References

EXPLOITDB 35493
PACKETSTORM 129408
URL http://www.homelab.it/index.php/2014/12/06/wordpress-ajax-store-locator-arbitrary-file-download-vulnerability/

Classification

Type LFI
OWASP Top 10 A1: Injection
CWE CWE-22

Miscellaneous

Submitter pvdl
Views 3919
Verified No
WPVDB ID 7712

Timeline

Publicly Published 2014-12-08 (over 4 years ago)
Added 2014-12-08 (over 4 years ago)
Last Updated 2015-05-15 (about 4 years ago)

Our Other Services

Online WordPress Vulnerability Scanner WPScan WordPress Security Plugin