The import-users-from-csv-with-meta plugin before 1.14.2.1 for WordPress has directory traversal.
References
| Link | Resource |
|---|---|
| https://wordpress.org/plugins/import-users-from-csv-with-meta/#developers | Release Notes |
| https://wpvulndb.com/vulnerabilities/9392 | Third Party Advisory |
| https://wordpress.org/plugins/import-users-from-csv-with-meta/#developers | Release Notes |
| https://wpvulndb.com/vulnerabilities/9392 | Third Party Advisory |
Configurations
History
21 Nov 2024, 04:28
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://wordpress.org/plugins/import-users-from-csv-with-meta/#developers - Release Notes | |
| References | () https://wpvulndb.com/vulnerabilities/9392 - Third Party Advisory |
Information
Published : 2019-08-22 20:15
Updated : 2024-11-21 04:28
NVD link : CVE-2019-15326
Mitre link : CVE-2019-15326
CVE.ORG link : CVE-2019-15326
JSON object : View
Products Affected
codection
- import_users_from_csv_with_meta
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
