Description
WordPress is prone to a directory traversal vulnerability because it fails to sufficiently verify user-supplied input data. Exploiting the issue may allow an attacker to access sensitive information that could aid in further attacks. WordPress 2.3.3 is vulnerable; other versions may also be affected.
Remediation
Update to WordPress version 2.5.1 or latest
References
Related Vulnerabilities
TwistedHTTP Request Splitting Vulnerability (CVE-2020-10109)
Oracle Database Server CVE-2011-3511 Vulnerability (CVE-2011-3511)
Jetty Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-2080)
WordPress Plugin UpdraftPlus WordPress Backup Cross-Site Scripting (1.16.65)
WordPress Plugin Video Chat Multiple Cross-Site Scripting Vulnerabilities (1.4.1)