RSS   Vulnerabilities for 'Adaptive images'   RSS

2019-07-21
 
CVE-2019-14206

CWE-20
 

 
An Arbitrary File Deletion vulnerability in the Nevma Adaptive Images plugin before 0.6.67 for WordPress allows remote attackers to delete arbitrary files via the $REQUEST['adaptive-images-settings'] parameter in adaptive-images-script.php.

 
 
CVE-2019-14205

CWE-200
 

 
A Local File Inclusion vulnerability in the Nevma Adaptive Images plugin before 0.6.67 for WordPress allows remote attackers to retrieve arbitrary files via the $REQUEST['adaptive-images-settings']['source_file'] parameter in adaptive-images-script.php.

 


Copyright 2019, cxsecurity.com

 

Back to Top