cleantalk
Vulnerabilities and Security Researches

All-In-One Security (AIOS) – Security and Firewall, 4d6a4031a3cbd06a805b4c3c43fcc3b4e230a014

Published on
Feb 15, 2023
Research Description
All-In-One Security (AIOS) – Security and Firewall [all-in-one-wp-security-and-firewall] < 5.1.5 WordPress All In One WP Security & Firewall Plugin <= 5.1.4 is vulnerable to Directory Traversal Update the WordPress All In One WP Security & Firewall plugin to the latest available version (at least 5.1.5). Unknown discovered and reported this Directory Traversal vulnerability in WordPress All In One WP Security & Firewall Plugin. This could allow a malicious actor to see all files in a given directory or determine if certain files/directories exist in given folder. This can be used to exploit other weaknesses in the system This vulnerability has been fixed in version 5.1.5.
Affected versions
max 5.1.5.
Status
vulnerable