The WPIDE WordPress plugin prior to 3.0 does not sanitize and validate the filename parameter before using it in a require statement in the admin dashboard, leading to a Local File Inclusion issue.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
xplodedthemes wpide |