vendor:
W3 Total Cache
by:
VinhJAXT, Hoa Nguyen - SunCSR Team
7.5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: W3 Total Cache
Affected Version From: 0.9.2.6
Affected Version To: 0.9.3
Patch Exists: YES
Related CWE: CVE-2019-6715, WPVDB-9248
CPE: a:w3_edge:w3_total_cache
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: WordPress
2014
WordPress W3 Total Cache File Read Vulnerability
This module exploits an unauthenticated directory traversal vulnerability in WordPress plugin 'W3 Total Cache' version 0.9.2.6-0.9.3, allowing arbitrary file read with the web server privileges.
Mitigation:
Upgrade to the latest version of W3 Total Cache plugin