CVE-2012-3588
Directory traversal vulnerability in preview.php in the Plugin Newsletter plugin 1.5 for WordPress allows remote attackers to read arbitr… (CVE-2012-3588)
noneEPSS 11%
Description
Metrics
Severity
none
57.31
no public PoC known
95.5 %
Critical — this CVE ranks in the top fifth of all CVEs scored today (rank ≥ 80%).
Published
2012-06-19 20:00 UTC
—
Affected products
Products and version ranges extracted from the vendor/CERT advisory. A range like „<4.14.6“ implies the update recommendation „upgrade to 4.14.6 or later“.
wordpress
plugin_newsletter_plugin
References & sources
- http://secunia.com/advisories/49464third-party-advisoryx_refsource_SECUNIA
- https://exchange.xforce.ibmcloud.com/vulnerabilities/76171vdb-entryx_refsource_XF
- http://www.exploit-db.com/exploits/19018exploitx_refsource_EXPLOIT-DB
- http://www.opensyscom.fr/Actualites/wordpress-plugins-plugin-newsletter-remote-file-disclosure-vulnerability.htmlx_refsource_MISC
IDCVE-2012-3588