WordPress 1003 Mortgage Application plugin <= 1.75 - Local File Inclusion
Published May 17, 2024
7.7
HIGHCVSS 3.1
EPSS 0.94%
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Lenderd 1003 Mortgage Application allows Relative Path Traversal.This issue affects 1003 Mortgage Application: from n/a through 1.75.
Affected products
-
Affected
- ≤ 1.75
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Lenderd | 1003 Mortgage Application | unaffected | Affected
|
No data.
-
Affected
- ≥ 0, ≤ 1.75
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Lenderd | 1003 Mortgage Application | unknown | Affected
|
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
Update to 1.80 or a higher version.
References (2)
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data