Description
pub/sns.php in the W3 Total Cache plugin before 0.9.4 for WordPress allows remote attackers to read arbitrary files via the SubscribeURL field in SubscriptionConfirmation JSON data.
Remediation
References
Related Vulnerabilities
MySQL CVE-2019-2510 Vulnerability (CVE-2019-2510)
MySQL CVE-2014-4258 Vulnerability (CVE-2014-4258)
WordPress Plugin Bing Site Verification using Meta Tag Cross-Site Scripting (1.0)
Collabtive Improper Privilege Management Vulnerability (CVE-2013-5027)
WordPress Plugin Easy Social Feed-Social Photos Gallery-Post Feed-Like Box Security Bypass (6.3.3)