CVE Database · CVE-2012-6652
CVSS v3.1
N/A
EPSS
4.42%
Published
May 13, 2019
Modified
Nov 20, 2024
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Directory traversal vulnerability in pageflipbook.php script from index.php in Page Flip Book plugin for WordPress (wppageflip) allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the pageflipbook_language parameter.
Weaknesses (CWE)
Affected Products (1)
References (8)