WordPress Plugin Import and export users and customers Directory Traversal - CVE-2019-15326 - Vulnerability Database

WordPress Plugin Import and export users and customers Directory Traversal - CVE-2019-15326

Medium
Reference: CVE-2019-15326
Title: WordPress Plugin Import and export users and customers Directory Traversal
Overview:

WordPress Plugin Import and export users and customers is prone to a directory traversal vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue can allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin Import and export users and customers version 1.14.2 is vulnerable prior versions may also be affected.