Vulnerability Details CVE-2014-4937
Directory traversal vulnerability in includes/bookx_export.php BookX plugin 1.7 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.064
EPSS Ranking 90.6%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2014-4937
-
cpe:2.3:a:bookx_plugin_project:bookx:1.7