Auto Generated CVE annotations [Sun Oct 17 11:26:16 UTC 2021] 🤖

patch-1
GitHub Action 2021-10-17 11:26:16 +00:00
parent bd2e856174
commit dfc4a64fdc
1 changed files with 5 additions and 0 deletions

View File

@ -7,6 +7,11 @@ info:
description: The zip-attachments plugin allows arbitrary file downloads because it does not check the download path of the requested file.
reference: https://wpscan.com/vulnerability/8047
tags: lfi,wordpress,cve,cve2015,wp-plugin
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
cvss-score: 8.60
cve-id: CVE-2015-4694
cwe-id: CWE-22
requests:
- method: GET