This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Zingiri First view 2014-04-04
Product Forums Last view 2014-04-04
Version 1.0.9 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:zingiri:forums

Activity : Overall

Related : CVE

  Date Alert Description
5 2014-04-04 CVE-2012-4920

Directory traversal vulnerability in the zing_forum_output function in forum.php in the Zingiri Forum (aka Forums) plugin before 1.4.4 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the url parameter to index.php.

CWE : Common Weakness Enumeration

%idName
100% (1) CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path ...

Nessus® Vulnerability Scanner

id Description
2013-01-25 Name: The remote web server contains a PHP script that is affected by an informatio...
File: wordpress_forums_url_file_disclosure.nasl - Type: ACT_ATTACK