Vulnerability Description
Directory traversal vulnerability in the TheCartPress eCommerce Shopping Cart (aka The Professional WordPress eCommerce Plugin) plugin for WordPress before 1.3.9.3 allows remote administrators to read arbitrary files via a .. (dot dot) in the tcp_box_path parameter in the checkout_editor_settings page to wp-admin/admin.php.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Thecartpress | Thecartpress Ecommerce Shopping Cart | <= 1.3.9 |
Related Weaknesses (CWE)
References
- http://osvdb.org/show/osvdb/121439
- http://packetstormsecurity.com/files/131673/WordPress-TheCartPress-1.3.9-XSS-LocExploit
- http://www.securityfocus.com/archive/1/535396/100/0/threaded
- http://www.securityfocus.com/bid/74395
- https://wordpress.org/plugins/thecartpress/changelog/Patch
- https://www.exploit-db.com/exploits/36860/Exploit
- https://www.htbridge.com/advisory/HTB23254Exploit
- http://osvdb.org/show/osvdb/121439
- http://packetstormsecurity.com/files/131673/WordPress-TheCartPress-1.3.9-XSS-LocExploit
- http://www.securityfocus.com/archive/1/535396/100/0/threaded
- http://www.securityfocus.com/bid/74395
- https://wordpress.org/plugins/thecartpress/changelog/Patch
- https://www.exploit-db.com/exploits/36860/Exploit
- https://www.htbridge.com/advisory/HTB23254Exploit
FAQ
What is CVE-2015-3301?
CVE-2015-3301 is a vulnerability with a CVSS score of 4.0 (MEDIUM). Directory traversal vulnerability in the TheCartPress eCommerce Shopping Cart (aka The Professional WordPress eCommerce Plugin) plugin for WordPress before 1.3.9.3 allows remote administrators to read...
How severe is CVE-2015-3301?
CVE-2015-3301 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-3301?
Check the references section above for vendor advisories and patch information. Affected products include: Thecartpress Thecartpress Ecommerce Shopping Cart.