Beveiligingsadvies

CVE-2024-35162

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-05-22 05:30:33
Laatst bijgewerkt 2024-08-12 15:53:54
Toegewezen door jpcert
CVSS-score 6.5
Status PUBLISHED

Beschrijving

Path traversal vulnerability exists in Download Plugins and Themes from Dashboard versions prior to 1.8.6. If this vulnerability is exploited, a remote authenticated attacker with "switch_themes" privilege may obtain arbitrary files on the server.