CVE-2014-125102

A vulnerability classified as problematic was found in Bestwebsoft Relevant Plugin up to 1.0.7 on WordPress. Affected by this vulnerability is an unknown functionality of the component Thumbnail Handler. The manipulation leads to information disclosure. The attack can be launched remotely. Upgrading to version 1.0.8 is able to address this issue. The identifier of the patch is 860d1891025548cf0f5f97364c1f51a888f523c3. It is recommended to upgrade the affected component. The identifier VDB-230113 was assigned to this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:bestwebsoft:relevant:*:*:*:*:*:wordpress:*:*

History

21 Nov 2024, 02:03

Type Values Removed Values Added
References () https://github.com/wp-plugins/relevant/commit/860d1891025548cf0f5f97364c1f51a888f523c3 - Patch () https://github.com/wp-plugins/relevant/commit/860d1891025548cf0f5f97364c1f51a888f523c3 - Patch
References () https://vuldb.com/?ctiid.230113 - Permissions Required () https://vuldb.com/?ctiid.230113 - Permissions Required
References () https://vuldb.com/?id.230113 - Permissions Required () https://vuldb.com/?id.230113 - Permissions Required
CVSS v2 : 4.0
v3 : 7.5
v2 : 4.0
v3 : 4.3

20 Oct 2023, 08:15

Type Values Removed Values Added
Summary A vulnerability classified as problematic was found in Bestwebsoft Relevant Plugin up to 1.0.7 on WordPress. Affected by this vulnerability is an unknown functionality of the component Thumbnail Handler. The manipulation leads to information disclosure. The attack can be launched remotely. Upgrading to version 1.0.8 is able to address this issue. The name of the patch is 860d1891025548cf0f5f97364c1f51a888f523c3. It is recommended to upgrade the affected component. The identifier VDB-230113 was assigned to this vulnerability. A vulnerability classified as problematic was found in Bestwebsoft Relevant Plugin up to 1.0.7 on WordPress. Affected by this vulnerability is an unknown functionality of the component Thumbnail Handler. The manipulation leads to information disclosure. The attack can be launched remotely. Upgrading to version 1.0.8 is able to address this issue. The identifier of the patch is 860d1891025548cf0f5f97364c1f51a888f523c3. It is recommended to upgrade the affected component. The identifier VDB-230113 was assigned to this vulnerability.

05 Jun 2023, 17:32

Type Values Removed Values Added
CPE cpe:2.3:a:bestwebsoft:relevant:*:*:*:*:*:wordpress:*:*
References (MISC) https://vuldb.com/?ctiid.230113 - (MISC) https://vuldb.com/?ctiid.230113 - Permissions Required
References (MISC) https://github.com/wp-plugins/relevant/commit/860d1891025548cf0f5f97364c1f51a888f523c3 - (MISC) https://github.com/wp-plugins/relevant/commit/860d1891025548cf0f5f97364c1f51a888f523c3 - Patch
References (MISC) https://vuldb.com/?id.230113 - (MISC) https://vuldb.com/?id.230113 - Permissions Required
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-200 NVD-CWE-noinfo
First Time Bestwebsoft relevant
Bestwebsoft

29 May 2023, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-05-29 23:15

Updated : 2024-11-21 02:03


NVD link : CVE-2014-125102

Mitre link : CVE-2014-125102

CVE.ORG link : CVE-2014-125102


JSON object : View

Products Affected

bestwebsoft

  • relevant
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

NVD-CWE-noinfo