NA

CVE-2023-4297

Published: 27/11/2023 Updated: 30/11/2023
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The Mmm Simple File List WordPress plugin up to and including 2.3 does not validate the generated path to list files from, allowing any authenticated users, such as subscribers, to list the content of arbitrary directories.

Vulnerable Product Search on Vulmon Subscribe to Product

mediamanifesto mmm simple file list