Description
WordPress is prone to a directory traversal vulnerability because it fails to sufficiently verify user-supplied input data. Exploiting the issue may allow an attacker to access sensitive information that could aid in further attacks. WordPress 2.3.3 is vulnerable; other versions may also be affected.
Remediation
Update to WordPress version 2.5.1 or latest
References
Related Vulnerabilities
WordPress Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-17670)
MySQL CVE-2019-2536 Vulnerability (CVE-2019-2536)
WordPress Plugin Contact Form Email Multiple Vulnerabilities (1.2.65)
Ampache Improper Authentication Vulnerability (CVE-2007-4438)
WordPress Plugin Database for Contact Form 7, WPforms, Elementor forms Cross-Site Scripting (1.3.8)