cleantalk
Vulnerabilities and Security Researches

Include Me, CVE-2021-24453

CVE, Research URL

CVE-2021-24453

Application

Include Me

Published on
Jul 19, 2021
Research Description
The Include Me WordPress plugin through 1.2.1 is vulnerable to path traversal / local file inclusion, which can lead to Remote Code Execution (RCE) of the system due to log poisoning and therefore potentially a full compromise of the underlying structure
Affected versions
Min -, max 1.2.2.
Status
vulnerable