cleantalk
Vulnerabilities and Security Researches

All-In-One Security (AIOS) – Security and Firewall, fb95e51b7acae41ce9b6896cafc39abf51b71f69

Published on
Feb 14, 2023
Research Description
All-In-One Security (AIOS) – Security and Firewall [all-in-one-wp-security-and-firewall] < 5.1.5 All-In-One Security (AIOS) <= 5.1.4 - Authenticated(Admin+) Directory Traversal The All-In-One Security (AIOS) plugin for WordPress is vulnerable to directory traversal in versions up to, and including, 5.1.4. This allows authenticated attackers with administrator-level permissions to read the contents of arbitrary files on the server.
Affected versions
max 5.1.5.
Status
vulnerable