CVE-2015-4617: Path Traversal
Published Feb 15, 2019
·Updated
Vulnerability in Easy2map-photos WordPress Plugin v1.09 MapPinImageUpload.php and MapPinIconSave.php allows path traversal when specifying file names creating files outside of the upload directory.
Affected Software
1 affected component
Easy2map Easy2map-photos WordPress=1.09
Event History
Feb 15, 2019
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2015-4617?
The severity of CVE-2015-4617 is considered to be high due to its potential for unauthorized file access.
2
How do I fix CVE-2015-4617?
To fix CVE-2015-4617, update the Easy2map-photos WordPress Plugin to the latest version that addresses the path traversal vulnerability.
3
What systems are affected by CVE-2015-4617?
CVE-2015-4617 affects Easy2map-photos WordPress Plugin version 1.09.
4
What type of vulnerability is CVE-2015-4617?
CVE-2015-4617 is a path traversal vulnerability that allows attackers to write files outside of designated directories.
5
What techniques can attackers use in CVE-2015-4617?
Attackers can exploit CVE-2015-4617 by manipulating file names to gain unauthorized access to files on the server.