CVE-2024-52386: WordPress Classified Listing plugin <= 3.1.16 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in RadiusTheme Classified Listing classified-listing allows PHP Local File Inclusion.This issue affects Classified Listing: from n/a through <= 3.1.16.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-52386?
CVE-2024-52386 has been classified as a critical vulnerability due to its potential for remote file inclusion.
How do I fix CVE-2024-52386?
To fix CVE-2024-52386, update the RadiusTheme Classified Listing plugin to the latest version.
What platforms are affected by CVE-2024-52386?
CVE-2024-52386 affects the RadiusTheme Classified Listing and WordPress Classified Listing plugins up to version 3.1.15.1.
Can CVE-2024-52386 lead to data breaches?
Yes, CVE-2024-52386 can potentially lead to data breaches by allowing attackers to execute malicious scripts.
Is CVE-2024-52386 exploited in the wild?
As of the last report, there is no confirmation of active exploitation of CVE-2024-52386 in the wild.