Vulnerabilities
Vulnerable Software
The Slider Revolution WordPress plugin through 6.6.12 does not check for valid image files upon import, leading to an arbitrary file upload which may be escalated to Remote Code Execution in some server configurations.
CVSS Score
8.8
EPSS Score
0.05
Published
2023-06-19
Directory traversal vulnerability in the Slider Revolution (revslider) plugin before 4.2 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php.
CVSS Score
5.0
EPSS Score
0.077
Published
2015-06-30


Contact Us

Shodan ® - All rights reserved