The nelio-ab-testing plugin before 4.5.0 for WordPress has filename=..%2f directory traversal.
References
Link | Resource |
---|---|
https://wordpress.org/plugins/nelio-ab-testing/#developers | Release Notes |
https://wpvulndb.com/vulnerabilities/8491 | Third Party Advisory |
https://www.openwall.com/lists/oss-security/2016/05/10/1 | Exploit Mailing List Third Party Advisory |
https://wordpress.org/plugins/nelio-ab-testing/#developers | Release Notes |
https://wpvulndb.com/vulnerabilities/8491 | Third Party Advisory |
https://www.openwall.com/lists/oss-security/2016/05/10/1 | Exploit Mailing List Third Party Advisory |
Configurations
History
21 Nov 2024, 02:45
Type | Values Removed | Values Added |
---|---|---|
References | () https://wordpress.org/plugins/nelio-ab-testing/#developers - Release Notes | |
References | () https://wpvulndb.com/vulnerabilities/8491 - Third Party Advisory | |
References | () https://www.openwall.com/lists/oss-security/2016/05/10/1 - Exploit, Mailing List, Third Party Advisory |
Information
Published : 2019-09-17 15:15
Updated : 2024-11-21 02:45
NVD link : CVE-2016-10977
Mitre link : CVE-2016-10977
CVE.ORG link : CVE-2016-10977
JSON object : View
Products Affected
neliosoftware
- nelio_ab_testing
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')