Vulnerabilities
Vulnerable Software
Wp-Rocket:  >> Wp-Rocket  >> 1.3.7  Security Vulnerabilities
In the WP Rocket plugin 2.9.3 for WordPress, the Local File Inclusion mitigation technique is to trim traversal characters (..) -- however, this is insufficient to stop remote attacks and can be bypassed by using 0x00 bytes, as demonstrated by a .%00.../.%00.../ attack.
CVSS Score
7.5
EPSS Score
0.03
Published
2017-07-26


Contact Us

Shodan ® - All rights reserved