plugin

Haxcan Vulnerabilities

1 known security issue reported for the Haxcan WordPress plugin. Most recent disclosed Jul 5, 2021.

1 medium

Running Haxcan on your site? Check whether your installed version is affected.

Scan your site free

Haxcan <= 1.0.0 - Authenticated (Admin+) Path Traversal to Arbitrary File Read

medium

The Haxcan plugin for WordPress is vulnerable to Path Traversal in versions up to, and including, 1.0.0 via improper limitation boundaries. This allows high-level authenticated attackers to read the contents of arbitrary files on the server, which can contain sensitive information.

CVSS:
4.9
Affected:
up to 1.0.0
Fix:
No patched version reported
Disclosed:
Jul 5, 2021

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database