CVE-2014-4937 Information

Description

Directory traversal vulnerability in includes/bookx_export.php BookX plugin 1.7 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.

Reference

http://codevigilant.com/disclosure/wp-plugin-bookx-local-file-inclusion/

Share on: