theme

Scv1 Vulnerabilities

1 known security issue reported for the Scv1 WordPress theme. Most recent disclosed Jun 10, 2014.

1 high

Running Scv1 on your site? Check whether your installed version is affected.

Scan your site free

SCv1 Theme (All Known Versions) - Arbitrary File Download

high

The SCv1 Theme for WordPress is vulnerable to Arbitrary File Download in all known versions. This is due to insufficient sanitization of user input on the 'file' parameter. This makes it possible for unauthenticated attackers to download arbitrary files, including configuration files.

CVSS:
7.5
Affected:
up to *
Fix:
No patched version reported
Disclosed:
Jun 10, 2014

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database