Impact
The RSFirewall! plugin contains a path traversal flaw in the get_local_filename() function, allowing authenticated attackers with administrator or higher privileges to read the contents of arbitrary files on the server. This can expose sensitive configuration, credential, and code files. The vulnerability is classified as CWE-22.
Affected Systems
The flaw affects all versions of RSFirewall! for WordPress up to and including 1.1.42, distributed by the rsjoomla organization. WordPress sites that have installed any of these affected plugin versions are at risk.
Risk and Exploitability
The CVSS score of 4.9 indicates moderate severity, but the EPSS score of less than 1% suggests a low likelihood of exploitation in the wild. Because the attack requires administrator-level authentication, the risk is confined to sites where an attacker can gain such access. The vulnerability has not been listed in CISA KEV catalogues and is not yet widely exploited, though any privileged user could leverage it to read any file readable by the web server process.
OpenCVE Enrichment
EUVD