CVE Published: 15/02/2019 |
CVE Updated: 06/08/2024 |
CVE Year: 2015 Source: larry_cashdollar |
Vendor: Steven Ellis |
Product: Easy2map-photos WordPress Plugin Status : PUBLISHED
CVE-2015-4617 Description
Vulnerability in Easy2map-photos WordPress Plugin v1.09 MapPinImageUpload.php and MapPinIconSave.php allows path traversal when specifying file names creating files outside of the upload directory.