An issue was discovered in the JSmol2WP plugin 1.07 for WordPress. There is an arbitrary file read vulnerability via ../ directory traversal in query=php://filter/resource= in the jsmol.php query string. This can also be used for SSRF.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T12:05:16.184Z
Reserved: 2018-12-25T00:00:00
Link: CVE-2018-20463
No data.
Status : Modified
Published: 2018-12-25T21:29:00.293
Modified: 2024-11-21T04:01:32.310
Link: CVE-2018-20463
No data.
OpenCVE Enrichment
No data.
Weaknesses