Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-5672
HistoryDec 26, 2023 - 7:15 p.m.

Design/Logic Flaw

2023-12-2619:15:00
PRIOn knowledge base
www.prio-n.com
4
wp mail log
plugin
file path
validation
vulnerability
local file inclusion
attacker

6.8 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

18.5%

The WP Mail Log WordPress plugin before 1.1.3 does not properly validate file path parameters when attaching files to emails, leading to local file inclusion, and allowing an attacker to leak the contents of arbitrary files.

CPENameOperatorVersion
wp_mail_loglt1.1.3

6.8 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

18.5%

Related for PRION:CVE-2023-5672