Multiple directory traversal vulnerabilities in (1) includes/MapImportCSV2.php and (2) includes/MapImportCSV.php in the Easy2Map plugin prior to 1.3.0 for WordPress allow remote malicious users to include and execute arbitrary files via the csvfile parameter related to "upload file functionality."
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
easy2map easy2map |