Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-8799

Directory traversal vulnerability in the dp_img_resize function in php/dp-functions.php in the DukaPress plugin before 2.5.4 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter to lib/dp_image.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.881
EPSS Ranking 99.5%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2014-8799


Contact Us

Shodan ® - All rights reserved