mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
919 B
919 B
CVE-2022-1391
Description
The Cab fare calculator WordPress plugin before 1.0.4 does not validate the controller parameter before using it in require statements, which could lead to Local File Inclusion issues.
POC
Reference
- https://packetstormsecurity.com/files/166533/
- https://wpscan.com/vulnerability/680121fe-6668-4c1a-a30d-e70dd9be5aac