WordPress Plugin Download Shortcode Local File Inclusion - CVE-2014-5465 - Vulnerability Database

WordPress Plugin Download Shortcode Local File Inclusion - CVE-2014-5465

Medium
Reference: CVE-2014-5465
Title: WordPress Plugin Download Shortcode Local File Inclusion
Overview:

WordPress Plugin Download Shortcode is prone to a local file inclusion vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin Download Shortcode version 0.2.3 is vulnerable prior versions may also be affected.