Create CVE-2022-2544.md

add CVE-2022-2544
This commit is contained in:
Goby 2023-05-23 15:35:04 +08:00 committed by GitHub
parent bf4e6cb5eb
commit 432fbfeec8
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

12
CVE-2022-2544.md Normal file
View File

@ -0,0 +1,12 @@
## Wordpress wpjobboard plugin wpjobboard directory traversal vulnerability (CVE-2022-2544)
| **Vulnerability** | **Wordpress wpjobboard plugin wpjobboard directory traversal vulnerability (CVE-2022-2544)** |
| :----: | :-----|
| **Chinese name** | Wordpress wpjobboard 插件 wpjobboard 页面目录遍历漏洞CVE-2022-2544 |
| **CVSS core** | 7.5 |
| **FOFA Query** (click to view the results directly)| [body="wp-content/plugins/wpjobboard"](https://en.fofa.info/result?qbase64=Ym9keT0id3AtY29udGVudC9wbHVnaW5zL3dwam9iYm9hcmQi) |
| **Number of assets affected** | 1201 |
| **Description** | Wpjobboard is a plugin of Wordpress. The Wpjobboard plug-in allows website owners to embed payment forms and make payments via Visa, American Express, Discover and Mastercard through their Click&Lead merchant accounts.The Wpjobboard plug-in has a directory traversal vulnerability, through which an attacker can view sensitive directories and files in the server, control the entire system, and finally cause the system to be in an extremely insecure state. |
| **Impact** | The Wpjobboard plug-in has a directory traversal vulnerability, through which an attacker can view sensitive directories and files in the server, control the entire system, and finally cause the system to be in an extremely insecure state. |
![](https://s3.bmp.ovh/imgs/2023/05/23/4ddb35a567453502.gif)