IBS Mappro < 1.0 - Directory Traversal
highAbsolute path traversal vulnerability in lib/download.php in the IBS Mappro plugin before 1.0 for WordPress allows remote attackers to read arbitrary files via a full pathname in the file parameter.
- CVSS:
- 7.5
- Affected:
- up to 0.6
- Fixed in:
- 1.0
- Disclosed:
- Jul 8, 2015