Directory Traversal Vulnerability in Ajax Pagination Plugin for WordPress
CVE-2014-2674
What is CVE-2014-2674?
A directory traversal vulnerability exists in the Ajax Pagination (twitter Style) plugin version 1.1 for WordPress. This weakness allows remote attackers to exploit improperly validated input, specifically through a crafted loop parameter in an ajax_navigation action, which targets the wp-admin/admin-ajax.php file. By leveraging this vulnerability, attackers can potentially read sensitive files on the server, leading to unauthorized information disclosure. Proper validation and sanitization of user inputs are essential to mitigate such risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
EPSS Score
23% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved