The Vrm 360 3D Model Viewer WordPress plugin through 1.2.1 exposes the full path of a file when putting in a non-existent file in a parameter of the shortcode.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2023-10-16T19:38:53.691Z
Updated: 2024-08-02T07:52:07.958Z
Reserved: 2023-09-25T15:28:47.717Z
Link: CVE-2023-5177
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-10-16T20:15:17.993
Modified: 2023-11-07T04:23:35.013
Link: CVE-2023-5177
Redhat
No data.