Description
WordPress Core is vulnerable to Directory Traversal in versions up to, and including, 6.2, via the ‘wp_lang’ parameter. This allows unauthenticated attackers to access and load arbitrary translation files. In cases where an attacker is able to upload a crafted translation file onto the site, such as via an upload form, this could be also used to perform a Cross-Site Scripting attack.
Remediation
References
Related Vulnerabilities
MySQL CVE-2017-3642 Vulnerability (CVE-2017-3642)
Oracle Application Server Other Vulnerability (CVE-2007-2130)
MySQL CVE-2020-14765 Vulnerability (CVE-2020-14765)
WordPress 4.1.x Same Origin Method Execution (SOME) Vulnerability (4.1 - 4.1.10)
Collabtive Improper Input Validation Vulnerability (CVE-2012-2670)