CVE-2012-4915
29.05.2014, 14:19
Directory traversal vulnerability in the Google Doc Embedder plugin before 2.5.4 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to libs/pdf.php.
Vendor | Product | Version |
---|---|---|
davistribe | google_doc_embedder | 𝑥 ≤ 2.5.3 |
davistribe | google_doc_embedder | 2.0 |
davistribe | google_doc_embedder | 2.1 |
davistribe | google_doc_embedder | 2.2 |
davistribe | google_doc_embedder | 2.2.1 |
davistribe | google_doc_embedder | 2.2.2 |
davistribe | google_doc_embedder | 2.2.3 |
davistribe | google_doc_embedder | 2.3 |
davistribe | google_doc_embedder | 2.4 |
davistribe | google_doc_embedder | 2.4.1 |
davistribe | google_doc_embedder | 2.4.2 |
davistribe | google_doc_embedder | 2.4.3 |
davistribe | google_doc_embedder | 2.4.4 |
davistribe | google_doc_embedder | 2.4.5 |
davistribe | google_doc_embedder | 2.4.6 |
davistribe | google_doc_embedder | 2.5 |
davistribe | google_doc_embedder | 2.5.1 |
davistribe | google_doc_embedder | 2.5.2 |
𝑥
= Vulnerable software versions
References