Tom M8te <= 1.5.3 - Directory Traversal
mediumDirectory traversal vulnerability in the Tom M8te (tom-m8te) plugin 1.5.3 for WordPress allows remote attackers to read arbitrary files via the file parameter to tom-download-file.php.
- CVSS:
- 5.3
- Affected:
- up to *
- Fix:
- No patched version reported
- Disclosed:
- Sep 27, 2014