CVE-2020-24143
07.07.2021, 14:15
Directory traversal in the Video Downloader for TikTok (aka downloader-tiktok) plugin 1.3 for WordPress lets an attacker get access to files that are stored outside the web root folder via the njt-tk-download-video parameter.
| Vendor | Product | Version |
|---|---|---|
| ninjateam | video_downloader_for_tiktok | 1.3 |
𝑥
= Vulnerable software versions