WordPress Font Plugin Path Traversal Vulnerability (CVE-2015-7683)
Publish Date: 31 mai 2016
Gravité: : Critique
Date du conseil: 31 mai 2016
Description
There is an absolute path traversal vulnerability in WordPress which allows remote attackers to read arbitrary files via a full path name in the URL parameter.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1007178