Enhancement: cves/2018/CVE-2018-20985.yaml by mp

patch-1
MostInterestingBotInTheWorld 2022-05-13 13:24:38 -04:00
parent 0ee38b7099
commit 0cb1439b21
1 changed files with 3 additions and 3 deletions

View File

@ -1,11 +1,10 @@
id: CVE-2018-20985 id: CVE-2018-20985
info: info:
name: WordPress Payeezy Pay 2.97 - Local File Inclusion name: WordPress Payeezy Pay <=2.97 - Local File Inclusion
author: daffainfo author: daffainfo
severity: critical severity: critical
description: WordPress Plugin WP Payeezy Pay is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive description: WordPress Plugin WP Payeezy Pay is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin WP Payeezy Pay version 2.97 is vulnerable; prior versions are also affected.
information that could aid in further attacks. WordPress Plugin WP Payeezy Pay version 2.97 is vulnerable; prior versions are also affected.
reference: reference:
- https://www.pluginvulnerabilities.com/2018/12/06/our-improved-proactive-monitoring-has-now-caught-a-local-file-inclusion-lfi-vulnerability-as-well/ - https://www.pluginvulnerabilities.com/2018/12/06/our-improved-proactive-monitoring-has-now-caught-a-local-file-inclusion-lfi-vulnerability-as-well/
- https://wordpress.org/plugins/wp-payeezy-pay/#developers - https://wordpress.org/plugins/wp-payeezy-pay/#developers
@ -37,4 +36,5 @@ requests:
status: status:
- 200 - 200
# Enhanced by mp on 2022/05/13 # Enhanced by mp on 2022/05/13