WordPress Plugin WordPress File Upload Directory Traversal - CVE-2020-10564 - Vulnerability Database

WordPress Plugin WordPress File Upload Directory Traversal - CVE-2020-10564

High
Reference: CVE-2020-10564
Title: WordPress Plugin WordPress File Upload Directory Traversal
Overview:

WordPress Plugin WordPress File Upload is prone to a directory traversal vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue can allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin WordPress File Upload version 4.12.2 is vulnerable prior versions may also be affected.