Path Traversal Vulnerability Affects Rehub
CVE-2024-31232

8HIGH

Key Information:

Vendor
WordPress
Status
Vendor
CVE Published:
17 May 2024

Summary

A vulnerability exists in the Rehub Theme developed by Sizam Design where improper limitations of pathnames allow for path traversal attacks. This flaw enables malicious actors to exploit PHP Local File Inclusion, potentially compromising the security of the host system. This issue affects Rehub Theme versions from n/a through 19.6.1, emphasizing the importance of applying security updates and best practices to mitigate potential threats.

Affected Version(s)

Rehub <= 19.6.1

References

CVSS V3.1

Score:
8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Rafie Muhammad (Patchstack)
.