Directory traversal vulnerability in the Google Doc Embedder plugin prior to 2.5.4 for WordPress allows remote malicious users to read arbitrary files via a .. (dot dot) in the file parameter to libs/pdf.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
davistribe google_doc_embedder 2.5.2 |
||
davistribe google_doc_embedder 2.5.1 |
||
davistribe google_doc_embedder 2.4.1 |
||
davistribe google_doc_embedder 2.4 |
||
davistribe google_doc_embedder 2.5 |
||
davistribe google_doc_embedder 2.4.6 |
||
davistribe google_doc_embedder 2.3 |
||
davistribe google_doc_embedder 2.2.3 |
||
davistribe google_doc_embedder 2.4.5 |
||
davistribe google_doc_embedder 2.4.4 |
||
davistribe google_doc_embedder 2.2.2 |
||
davistribe google_doc_embedder 2.2.1 |
||
davistribe google_doc_embedder 2.2 |
||
davistribe google_doc_embedder |
||
davistribe google_doc_embedder 2.4.3 |
||
davistribe google_doc_embedder 2.4.2 |
||
davistribe google_doc_embedder 2.1 |
||
davistribe google_doc_embedder 2.0 |